"Always require an auth device" doesn't!

Bug #923814 reported by Stuart Metcalfe
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
Canonical SSO provider
Fix Released
Critical
Simon Davy

Bug Description

Step to reproduce:

 1. Add a 2-f device to your account
 2. Set "Require an authentication device" to "always"
 3. Log out
 4. Log back in with your credentials only
 5. When presented with the 2-f form, do not enter a token but, instead, navigate to /

What you see:

 1. Your logged in account page

What you should see:

 1. The 2-f form

David Owen (dsowen)
tags: added: kb-defect sp-1
David Owen (dsowen)
Changed in canonical-identity-provider:
status: Confirmed → In Progress
David Owen (dsowen)
Changed in canonical-identity-provider:
assignee: nobody → Simon Davy (bloodearnest)
David Owen (dsowen)
Changed in canonical-identity-provider:
status: In Progress → Fix Committed
Changed in canonical-identity-provider:
status: Fix Committed → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.