Uploaded image for project: 'Bitbucket Data Center'
  1. Bitbucket Data Center
  2. BSERV-11856

As an admin, I want the users to be able to clear their own CAPTCHA when SAML is enabled

    XMLWordPrintable

Details

    • 6
    • We collect Bitbucket feedback from various sources, and we evaluate what we've collected when planning our product roadmap. To understand how this piece of feedback will be reviewed, see our Implementation of New Features Policy.

    Description

      Problem Definition

      When using SAML as primary authentication and you have CAPTCHA enabled in the application, users that use HTTP basic authentication (for example in REST resource calls, or when using Git HTTPS in Bitbucket) may get locked out if they enter an incorrect password too many times. In these cases, an administrator will need to reset the user's CAPTCHA in the user list screen.

      When SAML is not enabled, users are able to clear their own CAPTCHA by logging in. This is not the case when SAML is enabled. Only an administrator can clear the CAPTCHA.

      Suggested Solution

      Have the option for users to clear their own CAPTCHA by logging in, similarly as when SAML is not enabled.

      Attachments

        Issue Links

          Activity

            People

              Unassigned Unassigned
              malonso@atlassian.com Miguel Alonso
              Votes:
              11 Vote for this issue
              Watchers:
              16 Start watching this issue

              Dates

                Created:
                Updated: