Method, instructions and system for establishing and enforcing change
password policy in a single sign-on environment. In response to receiving
a change instruction identifying a first single sign-on password, the
first single sign-on password is changed to create a second single
sign-on password. Then a target password is retrieved. The target
password is modified in a user selected manner to match the second single
sign-on password to create a modified target password. The modified
target password is stored. In response to a request from a user
requesting access to an application, the modified target password is
retrieved and the modified target password is provided to the requested
application.