| Summary: | Admin should be able to change passwords without knowing old one | ||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|
| Product: | [ECD] Orion | Reporter: | John Arthorne <john.arthorne> | ||||||||
| Component: | Client | Assignee: | John Arthorne <john.arthorne> | ||||||||
| Status: | RESOLVED FIXED | QA Contact: | |||||||||
| Severity: | major | ||||||||||
| Priority: | P3 | CC: | denis.roy, malgorzata.tomczyk, Szymon.Brandys | ||||||||
| Version: | 0.2 | Flags: | Szymon.Brandys:
review+
|
||||||||
| Target Milestone: | 0.2 | ||||||||||
| Hardware: | PC | ||||||||||
| OS: | Windows 7 | ||||||||||
| Whiteboard: | |||||||||||
| Attachments: |
|
||||||||||
|
Description
John Arthorne
I've been resetting passwords on orionhub.org without any problems ... as admin. Yes this is a regression. Previously, any logged in user could change their password without knowing their old password (bug 339413). *** Bug 349593 has been marked as a duplicate of this bug. *** Created attachment 198193 [details]
Simple hack
Created attachment 198197 [details]
Better hack
This uses the server setting the configures the set of users allowed to create accounts. This same set of users will be allowed to reset passwords without knowing the old one.
Created attachment 198198 [details]
Tidy up previous patch
|