Disable default SAML authentication if local login is enabled

Created on 17 March 2020, over 4 years ago
Updated 16 July 2024, about 2 months ago

Currently the codebase doesn't really check on register form that Local login is allowed or it isn't. So every new user has this option in default and they cannot change password for example.

Feature request
Status

Needs review

Version

4.0

Component

Code

Created by

🇭🇺Hungary segi

Live updates comments and jobs are added and updated live.
Sign in to follow issues

Comments & Activities

Not all content is available!

It's likely this issue predates Contrib.social: some issue and comment data are missing.

  • 🇦🇺Australia Mingsong 🇦🇺

    Still an issue with 4.0.0.

    If the 'Allow SAML users to set Drupal passwords' option is enabled, the user still can change their password according to my test with 4.0.0.

    But it is still a problem, which will create an external authentication link for every new user even if 'authentication via SimpleSAMLphp' option is inactive.

Production build 0.71.5 2024