-
Type:
Bug
-
Status: Closed (View Workflow)
-
Priority:
Major
-
Resolution: Done
-
Affects Version/s: 2.5.4.Final
-
Fix Version/s: 3.2.0.CR1
-
Component/s: Authenticator
-
Labels:None
-
Docs QE Status:NEW
-
QE Status:VERIFIED
Some spam filters seem to be consuming the link included in the email sent to the user, which leads to an "invalid_code" error when the actual user uses the link.
I think a reasonable approach would be to let the link stay valid until the code/state key has timed out or when the user finishes the reset flow.
- is incorporated by
-
KEYCLOAK-4627 Action Tokens
-
- Closed
-
- is related to
-
KEYCLOAK-4871 Rest Endpoint execute-actions-email
-
- Closed
-