Projects tigase _server server-core Issues #1511
Return better SASL error for accounts pending confirmation (#1511)
Closed
Andrzej Wójcik (Tigase) opened 9 months ago

It was brought to my attention that if account is waiting for confirmation (and due to that authentication is failing), currently Tigase reports back temporary-auth-failure error. This error suggest that without any user interaction, account may become accessible as the "issue" is only temporary.

For blocked accounts, Tigase returns account-disabled error that notifies user that account is blocked and it needs to take action to actually "fix" account state.

Due to the nature of the error (account pending confirmation), we should be returning account-disabled to let user know that some action has to be taken to enable his account.

Andrzej Wójcik (Tigase) changed state to 'In Progress' 9 months ago
Previous Value Current Value
Open
In Progress
Andrzej Wójcik (Tigase) commented 9 months ago

After short discussion with @bmalkow we decided that we can make this change without any impact on the account security.

Referenced from commit 9 months ago
Andrzej Wójcik (Tigase) changed state to 'In QA' 9 months ago
Previous Value Current Value
In Progress
In QA
wojciech.kapcia@tigase.net batch edited 3 months ago
Name Previous Value Current Value
Iterations
empty
tigase-server-8.4.0
wojciech.kapcia@tigase.net batch edited 3 months ago
Name Previous Value Current Value
Version
8.4.0
tigase-server-8.4.0
Andrzej Wójcik (Tigase) changed state to 'Closed' 3 months ago
Previous Value Current Value
In QA
Closed
issue 1 of 1
Type
Task
Priority
Normal
Assignee
Version
tigase-server-8.4.0
Server Version
8.4.0
Target Release
1.0
Sprints
n/a
Customer
n/a
Iterations
Issue Votes (0)
Watchers (4)
Reference
tigase/_server/server-core#1511
Please wait...
Page is in error, reload to recover