[keycloak-dev] Richer error message on login failure - user locked

Dumitru Sbenghe dsbenghe at gmail.com
Fri Sep 23 00:33:03 EDT 2016


Ok - I did find out that you guys disabled this for security reasons (
https://issues.jboss.org/browse/KEYCLOAK-2634).

Dumitru

On Fri, Sep 23, 2016 at 2:09 PM, Dumitru Sbenghe <dsbenghe at gmail.com> wrote:

> Hi,
>
> We are using Keycloak against a LDAP backend which is setup to lock the
> user on too many password failures. We want to display a nicer error
> message to the user when is locked rather than "Invalid username or
> password.".
>
> I looked at a related jira issue - https://issues.jboss.org/
> browse/KEYCLOAK-1744, but from my analysis of the code it seems the
> suggestion in the jira issue for richer error message was not implemented
> and that there isn't any way for the moment to provide richer error message
> following a login failure. Am I missing something or currently is not
> possible?
>
> Thanks,
> Dumitru
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.jboss.org/pipermail/keycloak-dev/attachments/20160923/6c6d467b/attachment.html 


More information about the keycloak-dev mailing list