Azure / Azure/azure-saas

Azure AD B2C Password reset policy not working

Open
#224 3 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

enhancement
Dominant language
C#
Stars
362
Forks
331
PR merge metrics
No merged PRs in 30d

Description

Describe the bug
A policy PasswordReset.xml has been installed on the Azure AD B2C instance but it doesn't seem to take effect.

To Reproduce
Steps to reproduce the behavior:

  1. Go to any of the web applications that require signin/signup
  2. Click on Forgot Password?
  3. Nothing happens

Expected behavior
User should be redirected to an Azure AD B2C page where he/she can reset password.

Contributor guide

No contributing guide indexed for this repository

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Start with the installed PasswordReset.xml policy and trace how the web applications handle the Forgot Password action in the Azure AD B2C sign-in/sign-up flow. Reproduce the issue from the listed steps and compare the observed behavior with the expected redirect to an Azure AD B2C password-reset page. Done means the action reliably redirects users to that page.

Written by the indexing model from the issue text.

Assessment

Tech stack
azure, csharp
Domain
authentication, cloud
Issue type
Bug
Difficulty
4/5
Estimated time
3-5 days
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
28/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.