View Issue Details

IDProjectCategoryView StatusLast Update
0009342Talerlibeufin-bank-ui (SPA)public2025-04-24 00:29
ReporterAntoine A Assigned To 
PrioritynormalSeverityminorReproducibilityN/A
Status confirmedResolutionopen 
Target Versionpost-1.0 
Summary0009342: Support locked account and token creation 2FA challenges
DescriptionIn the next version of libeufin-bank (API v7), 2FA challenges are required to create tokens using password authentication. For this to work, TAN endpoints are unauthenticated only for token creation challenges.

If a user fails TAN token creation challenges to many times, their account is locked. To unlock his account, he must contact the administrator or change his password using an existing token (with a client with which he is already connected).
Tagssecurity

Activities

There are no notes attached to this issue.

Issue History

Date Modified Username Field Change
2024-11-19 13:39 Antoine A New Issue
2024-11-19 13:39 Antoine A Status new => assigned
2024-11-19 13:39 Antoine A Assigned To => sebasjm
2025-02-25 00:19 Christian Grothoff Target Version 1.0 => 1.0 stretch goals
2025-04-17 22:16 Christian Grothoff Tag Attached: security
2025-04-17 22:16 Christian Grothoff Target Version 1.0 stretch goals => post-1.0
2025-04-24 00:29 Christian Grothoff Assigned To sebasjm =>
2025-04-24 00:29 Christian Grothoff Status assigned => confirmed