[keycloak-user] Keycloak -2FA Token Reset

Sylvain Malnuit sylvain.malnuit at lyra-network.com
Thu Apr 18 03:29:16 EDT 2019


Hi Sandeep,
Last year, I had the same question. It's possible to reset OTP in the user 
profile (Authenticator/Trash).
I  didn't find API to do a reset remotely and integrate QR code in our front 
office.
Have you found any information in last official API documentation (Keycloak 
5.0)?

-----Message d'origine-----
De : keycloak-user-bounces at lists.jboss.org 
[mailto:keycloak-user-bounces at lists.jboss.org] De la part de Sandeep 
Sancheti
Envoyé : mercredi 17 avril 2019 16:51
À : keycloak-user at lists.jboss.org
Objet : [keycloak-user] Keycloak -2FA Token Reset


Hi,

I’m helping my organisation to build and portal framework and one of the 
module is user login where Keycloak is being used as IDAM. One of the 
feature which we have enabled is 2 factor authentication and I’ve 
requirement to allow user to reset their 2FA token but my understanding from 
reading few blogs is that it is only possible via forgotten password flow. 
Is my understanding correct or I’m missing something? Could you please 
advise.

One of the other team is using WS02 as API manager and there’s option where 
if user need to reset token then admin can delete secret key from user’s 
profile which will then prompt user to rescan a new code on attempt to 
login. If Keycloak doesn’t have out of the box feature, can similar steps be 
done in Keycloak to reset token?

Regards
Sandeep

_______________________________________________
keycloak-user mailing list
keycloak-user at lists.jboss.org
https://lists.jboss.org/mailman/listinfo/keycloak-user



More information about the keycloak-user mailing list