Changing your password#
If you sign in to Querona with a standard account — a user name and a password that Querona itself holds, rather than your organisation’s Windows or Microsoft Entra ID account — you can change that password yourself, from your own profile. No special permission is needed, and you do not need access to the administration screens.
Change it#
Click your user name in the top-right corner. This opens My profile.
Click Change password.
Fill in Current password, New password and Confirm new password.
Click Save.
Save stays unavailable until the new password and its confirmation match, so a typo in one of the two cannot be saved.
If you sign in with a code from an authenticator app, the first field is labelled Current password (with your authenticator code in front): type the six-digit code the app shows now, then your current password, with nothing in between - exactly as you sign in. Your current password on its own is refused, and the refusal does not say whether the code or the password was wrong.
Why your current password is asked for#
Your current password is what shows that the change is yours, rather than made by someone who found your session unattended. Querona checks it on the server, in the same step that stores the new password, the way a sign-in is checked - which is why an account with an authenticator proves itself with the code and the password together: a session alone cannot change the password without the app.
If it does not match, nothing is stored: the first field - Current password, or Current password (with your authenticator code in front) for an account with an authenticator - is marked as failing, and you are told only that the current password did not match or, with an authenticator, that the current password with the code in front of it is not correct, without saying which of the two was wrong. Your existing password goes on working.
A wrong current password counts as a failed sign-in for your account from the address you are working from, under the same failed sign-in lockout a sign-in goes through. After three failures in a row the change is refused for a while without your password being checked; wait for the lockout to lapse and try again.
An administrator who sets your password for you from the administration screens is not asked for your current password or your code - see the link at the end of this page.
After the change#
Sessions you already have open elsewhere are not ended, and applications connected with your account keep working until they next reconnect. Update the password wherever you have saved it — in a SQL client or a reporting tool, for example — so that those reconnect successfully.
If the password fields are not offered#
The password fields are not offered when your account’s password is not one Querona holds; the profile says why instead.
If you sign in with your organisation’s account — a Windows account or a Microsoft Entra ID identity — the profile tells you that the password is managed by your organisation’s directory. It is the directory that issues your identity that holds the password, and you change it there, the same way as for any other application that uses it.
For any other account whose password Querona does not hold, the profile shows The password of this account cannot be changed here.
If you expected to be able to change it here, ask your administrator.
What is recorded#
The change is recorded, and so is a failed attempt. Your password itself is never written to the audit trail or to any Querona log, whether the change succeeds or fails.
See also
Administrators setting a password for another account: Setting a user’s password.