When you build or modify application definitions, it is recommended to test each supported application or the web page for the following requirements:
Entering a correct username or password.
Entering an incorrect username or password.
Canceling a login by the user.
Exceeding maximum password retries.
A user changing his or her own password.
Attempting to change to an illegal password.
This illegal password action is relevant when you define a password policy and you try to define a password that does not match the policy.
An administrator canceling a password change.
An administrator changing a user password.
Expiry of user password.
Locking out the account.
Locking out someone from the account.