Project

General

Profile

Task #2843

Send attribute to system together with the password for all operations

Added by Alena Peterová 5 months ago. Updated 18 days ago.

Status:
New
Priority:
High
Assignee:
Vít Švanda
Category:
Provisioning
Target version:
Start date:
05/31/2021
Due date:
% Done:

0%

Estimated time:
Milestones:

Description

After discussion with the team, the current implementation of the checkbox "Include only when password is changed" (#1787) doesn't cover all the use cases we need, because it's not sent when a new account is created.
Please change the behaviour so that the attribute is sent to the system only together with password = literally always when the PASSWORD is present in the attributes sent to the system.

Use cases:
  • pwdLastSet=true - when IdM sets this, AD will prompt users to change their password when they first login. So we want to send this attribute for newly created accounts and after reseting the password of the account
  • other metadata related to the password - initialization vector, timestamp with the password validity,...

History

#1 Updated by Vít Švanda 5 months ago

  • Priority changed from Normal to High
  • Target version set to 11.2.0

#3 Updated by Vít Švanda about 1 month ago

  • Target version changed from 11.2.0 to 11.3.0

Also available in: Atom PDF

Go to top