Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Separate activation counter for OTP from counter for authentication #911

Open
petrdvorak opened this issue May 17, 2023 · 0 comments
Open
Assignees

Comments

@petrdvorak
Copy link
Member

We might consider separating the maximum failure count for finished activations (counter is used during signature verification) and the maximum failure count for the activation OTP used during activation (the counter is used during activation). We now use the same values for this and hence it is not possible to configure the case "we need 3 attempts at most during activation for OTP, and 5 attempts for the authentication afterward".

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

3 participants