Uploaded image for project: 'Red Hat 3scale API Management'
  1. Red Hat 3scale API Management
  2. THREESCALE-5044

Remove ability to reset password when hooked up to SSO for auth

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Won't Do
    • Icon: Major Major
    • None
    • 2.8 GA
    • None
    • Not Started
    • Not Started
    • Not Started
    • Not Started
    • Not Started
    • Not Started
    • Hide

      Configure 3scale with SSO
      Login with a user
      Reset Password
      Can now log in with new password by passing SSO

      Show
      Configure 3scale with SSO Login with a user Reset Password Can now log in with new password by passing SSO

      What

      In RHMI we set up 3scale to use SSO. However a user can still go and reset their passwords and in doing so bypass SSO. This causes a potential problem where a user is removed from the backing IDP but can still log in to 3scale.

              Unassigned Unassigned
              cbrookes@redhat.com Craig Brookes
              Votes:
              1 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated:
                Resolved: