• I'm not actually in this situation, but I did just reset an unknown password and when doing changes I tend think of "what can go wrong" scenarios ahead of time. In this case I thought "What if the password is stored in encrypted form in an application config and we can't change it?" Most likely we'll be able to update with the new password anywhere it's needed.