When a user has setup the SSO to allow a Workplace or J100 series phone to login using the corporate IAM rather than a known username and password, there should be an option to allow AADS to scramble or reset the password on each successful login attempt. Business Case: New requirements of PCI-DSS require passwords to be rotated on a regular basis, including those device-to-machine and user-to-machine passwords that aren't set by a user themselves. By rotating the password on each successful login, the password will remain new. The SSO login portion of AADS allows the user to login with their known credentials; they are not given or exposed the actual internal password used by ASM/SMGR/AADS. This request would enhance security and will for compliance while still allowing the enterprise to manage the user's password separately.