Uploaded image for project: 'WSO2 Identity Server'
  1. WSO2 Identity Server
  2. IDENTITY-6116

User should not be allowed to reset password if tenant is deactivated.

    Details

    • Type: Bug
    • Status: Resolved
    • Priority: Normal
    • Resolution: Fixed
    • Affects Version/s: 5.3.0-GA
    • Fix Version/s: 5.4.0-M2
    • Component/s: identity-mgt
    • Labels:
      None
    • Severity:
      Major
    • Estimated Complexity:
      Moderate
    • Test cases added:
      Yes

      Description

      Here user of deactivated tenant should not be able to trigger password reset flow before mail or after mail.

      Say tenant is deactivated. User in that tenant shouldn't be able to initiate password reset.

      Say user initiated password reset request. And then tenant got deactivated. Then again user should not be able to continue resetting password.

        Attachments

          Activity

            People

            • Assignee:
              sathya@wso2.com Sathya Bandara
              Reporter:
              sathya@wso2.com Sathya Bandara
            • Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

              Dates

              • Created:
                Updated:
                Resolved: