The following should be supported:
* caller can generate a new password
* caller can delete their password
* caller can generate a password for another user if caller
has the generateHttpPassword capability.
* administrator can generate, delete, or set any password.
Change-Id: I719fc72a44a82c6cabf69c77abb91c1e08c87f75