As an admin, I want the users to be able to clear their own CAPTCHA when SAML is enabled

XMLWordPrintable

    • 5
    • 6

      Problem Definition

      When using SAML as primary authentication and you have CAPTCHA enabled in the application, users that use HTTP basic authentication (for example in REST resource calls, or when using Git HTTPS in Bitbucket) may get locked out if they enter an incorrect password too many times. In these cases, an administrator will need to reset the user's CAPTCHA in the user list screen.

      When SAML is not enabled, users are able to clear their own CAPTCHA by logging in. This is not the case when SAML is enabled. Only an administrator can clear the CAPTCHA.

      Suggested Solution

      Have the option for users to clear their own CAPTCHA by logging in, similarly as when SAML is not enabled.

            Assignee:
            Unassigned
            Reporter:
            Miguel Alonso
            Votes:
            12 Vote for this issue
            Watchers:
            17 Start watching this issue

              Created:
              Updated: