1
TAMILNADU GENERATION AND DISTRIBUTION CORPORATION LIMITED
From To
Er. S.Sathya Narayanan B.E., The Chief Engineer,
Chief Engineer/IT & R-APDRP, The Superintending Engineer,
NPKRR Maaligai, TANGEDCO/TANTRANSCO.
144, Anna Salai, Chennai – 2.
Lr No.CE/IT/SE-IT1/EESACC/AE-Inet/F.Email/D.573 /23 dt:08.08.2023
Sub: Implementation of E-Mail password policy for Official Email IDs – Cyber
security alert –Reg.
******
In TNEB, Email plays a vital role in communication and passing information
among officials across TANGEDCO, TANTRANSCO, TNEB Ltd and its consumers. The
new Email service "https://zmail.tnebnet.org" is implemented for all the designation
based Email IDs.
On an average daily three lakh e-mails get transferred to both internal users
as well as through the internet by utilizing TNEB designation based Email services for
various activities such as:
a) End-to-end communication among officials and also outside the
department.
b) ERP Package - bill passing, OTP verification, Store transactions, vendor
registration, etc.
c) New Service Connection acknowledgement, LT Electricity charges bill,
online payment account activation, E-Receipt, etc.
d) Departmental examination intimation for both TNEB employees and
candidates other than TNEB.
e) Server/Network Events is intimated via Email only.
Meanwhile, Spam emails are sent out in mass quantities by spammers and
cyber criminals to attack our Email service. The objective of these spammers is:
To obtain passwords, credit card numbers, bank account details and
more.
2
Spread malicious code onto recipients’ computers
Make false claims and deceive recipients into believing something
that's not true, etc.
To avoid end user by getting as a prey to the spammers, the end users are
instructed to reset their Email password regularly not compromising the Email policy
as mentioned below.
1) Password Pattern:
A password must contain minimum 10 characters in combination of Alphabets,
numeric, special characters, minimum one small letter (Lowercase) and one
capital letter (Uppercase).
Eg: T@ngedco23
2) The Email IDs who’s Emails are not logged in more than a month will be locked,
where as the account will be receiving mails, but the user can not log in, on
request the password will be reset and sent to the user.
3) Any invalid entry of password more than 5 times will be locked and the same will
be reset and communicated on request.
4) Users shall be responsible for all the activities performed with their Email IDs,
Users shall not permit others to perform any activity with their user IDs or
perform any activity with IDs belonging to other users. Passwords to be treated as
confidential information.
5) The password shall be changed immediately if the password is suspected of being
disclosed, or known to have been disclosed to an unauthorized party.
6) Once a temporary password is set, the user will be forced to reset password on
first login.
7) Periodically password reset must be done for every 30 days, failing so current
password will be expired.
8) Idle time logout will be set to avoid cyber security breaches and misuse.
9) In case of password is locked for a particular user, password reset request must
be raised through designation based Email of Managers/ Senior Managers/
Superintending Engineers from designation based Email ID under “tnebnet.org”
domain only.
10) The owner of the user ID owns the responsibility for sharing the
information/files/passwords to their colleagues, employees, vendors, clients, etc.
Strictly password not to be shared.
3
11) In case of any Email account seems to be violated or corrupted that account will
be locked without any prior intimation and the same will be reset on request.
Don’ts:
Do not reveal your password to any one, the sole responsibility of the
password maintenance falls on the owner of the Email ID. (Email ID
owner is the person for whom the Email ID is created and for the post
for which the Email ID created and the Employee who is in that post)
Don’t save your passwords in any formats (Saving in web browser, any
password management tools, bulk password sharing through mails,
any printed or written formats)
User must not set a weak password like username repeated in the
password.
Last three password patterns must not be repeated on password reset.
Password reset request received from other domains like (Gmail,
Yahoo, etc.) will not be considered.
Mail request received from “tnebltd.org” or name based Email will also
be not considered for designation based Email ID password reset.
For any Email related queries, kindly send mail to “[email protected]”
Sd/- dt:08.08.2023
Chief Engineer/ IT & R-APDRP