Overview
Slippery Rock University (SRU) is implementing password synchronization between SRU and PASSHE systems to improve the user experience and reduce issues caused by maintaining separate passwords.
Once enabled, password changes made to your SRU account will automatically synchronize to your associated PASSHE account. This means you will no longer need to maintain separate passwords for supported SRU and PASSHE systems.
What Is Changing?
Today, some users maintain:
- An SRU password used for campus resources
- A separate PASSHE password used for PASSHE-hosted services
This can lead to:
- Forgotten passwords
- Password mismatches between systems
- Additional Help Desk support requests
- User frustration when one password changes and the other does not
With password synchronization, your PASSHE password will automatically update whenever your SRU password is changed or reset.
What Do I Need To Do?
In most cases, nothing.
Continue to use the same password-change processes you use today.
When your SRU password changes, the corresponding PASSHE password will automatically be updated.
Password Changes That Will Synchronize
The following actions will automatically update your PASSHE password:
Password Change from a University Workstation
If you change your password using:
Ctrl + Alt + Delete
Change Password
your PASSHE password will be updated automatically.
Self-Service Password Changes
If you change your password through an approved SRU self-service password management tool, your PASSHE password will also be updated.
Single Sign-On (SSO) Applications
If a supported SRU application allows you to update your password through an integrated authentication process, the corresponding PASSHE password will be updated automatically.
Help Desk Password Resets
If the Help Desk resets your SRU password, the same password will automatically become your PASSHE password.
Administrative Password Resets
If an authorized administrator resets your SRU password, the new password will also be synchronized to PASSHE.
What Will My Experience Be?
After changing your SRU password:
✅ Log in to SRU systems using your new password.
✅ Log in to PASSHE applications using the same new password.
✅ No separate PASSHE password change is required.
Frequently Asked Questions
Will I still have a PASSHE account?
Yes.
Your PASSHE account will continue to exist and will still be used by PASSHE applications, SAP-related systems, authorization processes, and application access controls.
What changes is that your password will be synchronized from SRU.
Do I need to change my PASSHE password separately?
No.
Once synchronization is active for your account, your SRU password becomes the password used for both SRU and PASSHE systems.
How long does synchronization take?
Password synchronization occurs automatically after your SRU password is changed or reset. In most cases, the update should be available within a short period of time.
What should I do if the PASSHE password does not work?
If your PASSHE login does not work after changing your SRU password:
- Wait a few minutes and try again.
- Verify you are using your new SRU password.
- Contact the SRU Help Desk if the issue persists.
Future Authentication Strategy
Password synchronization is being implemented as an interim solution to improve the user experience and reduce support issues while SRU and PASSHE continue moving toward a modern federated authentication model.
SRU has consistently advocated for the use of standards-based Single Sign-On (SSO) through SAML whenever possible. SRU implemented SAML authentication for Employee Self-Service (ESS) as soon as it became available and has encouraged broader adoption of federated authentication across PASSHE-hosted applications.
PASSHE has committed to expanding SAML-based authentication capabilities, with broader implementation targeted for December 2027.
When that work is completed:
- PASSHE account objects will continue to exist for application authorization and access management.
- Users should no longer need to manage separate PASSHE passwords.
- Authentication will occur through federated identity services rather than synchronized passwords.
Why Is This Being Done?
This project is intended to:
- Reduce password-related support requests
- Eliminate separate password management processes
- Improve the user experience
- Reduce password mismatches between SRU and PASSHE systems
- Provide a bridge to future SAML-based single sign-on services
While password synchronization is effective, it is not considered the preferred long-term authentication model. Modern identity systems favor federated authentication and single sign-on rather than maintaining synchronized passwords across multiple environments.
Pilot Program
A pilot group of users will participate in initial testing before campus-wide deployment.
The pilot will allow Information and Administrative Technology Services (IATS) to:
- Validate synchronization functionality
- Confirm system performance
- Verify support procedures
- Measure user experience and effectiveness
Following successful pilot testing, communication will be distributed to the campus community before broader implementation.
Questions?
If you have questions about password synchronization or experience issues accessing PASSHE systems after a password change, please contact Henry Magusiak.