Version Affected: 20.06 onwards
Overview
When a user's password reset fails, for example because the new password does not meet the complexity requirements, the failure message is no longer highlighted in red, which makes the failure easy to miss.
Cause
The password reset page only highlights the result field in red when the displayed message contains the word Exception.
Resolution
To resolve this:
- Open the Admin Console and go to the Advanced Settings for the realm in question.
- Go to the Overview tab and open the Content and Localization editor.
- Find the passwordreset_notchanged variable and change its text from Password was not changed to wording that includes the word Exception, for example Password was not changed, Exception:.
- Save the change.
- Test a password reset with an invalid password. The failure message should now be highlighted in red.
SecureAuth Knowledge Base Articles provide information based on specific use cases and may not apply to all appliances or configurations. Be advised that these instructions could cause harm to the environment if not followed correctly or if they do not apply to the current use case.
Customers are responsible for their own due diligence prior to utilizing this information and agree that SecureAuth is not liable for any issues caused by misconfiguration directly or indirectly related to SecureAuth products.
Comments
Please sign in to leave a comment.