Uploaded image for project: 'RH-SSO'
  1. RH-SSO
  2. RHSSO-285

Confirm before changing OTP Policy

XMLWordPrintable

    • Icon: Epic Epic
    • Resolution: Done
    • Icon: Minor Minor
    • Archive - 21'
    • RH-SSO-7.0.0.GA
    • Server

      Before saving the changes in OTP Policy setting, there should be a warning that Authenticator will be reseted/disabled for all users in the realm.
      I believe this could be a minor security risk - a simple OTP attribute change (like token period) will immediately disable one of the security layers for the whole realm without any notice.

              Unassigned Unassigned
              rh_vmuzikar Václav Muzikář
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated:
                Resolved: