Replies: 2 comments 12 replies
|
I do not know if this has any impact at all on the client side. It could be that it will fail on the org which the user was first enrolled into, and works on the last one. It could also be that once resetted via org 1, it will not work anymore via org 2. One could say, multiple orgs could still work, as long as the user is only in one org which has the password reset feature enabled. But this is all theory, not tested at all. |
|
thanks for the quick reply. Here is what I tested: This leads me to believe that the single org requirement for password reset is not currently enforced in Vaultwarden. This is why I asked if this might be changed in the future and wanted to point out that this requirement could break some setups (especially due to the former alternative solution for groups in #1623). |
Uh oh!
There was an error while loading. Please reload this page.
Since version 1.30, the "Account Recovery Administration" policy states that the "Single organisation" policy must be activated in order to use Account Recovery.
After some testing, this does not yet seem to be the case in Vaultwarden.
I know that Vaultwarden wants to stay as close to Bitwarden as possible, so I am asking if this will be implemented for Vaultwarden in the future?
I am afraid that this could break the setup of some users, especially since it was recommended to use organisations before group support was introduced (#1623)
For example, I now have a few organisations that I can't really migrate into one, but have some users who need to access several of them.
I also don't want to compromise on the account recovery option.
All reactions