This ticket is a resurrection of the #3612. This functionality is needed for password reset capability when IPA is used as part of the public community infrastructure. While component might not be a part of IPA it should be integrated in the same way as we integrate with other technologies and be a separate "satellite" component deployed as needed.
Workflow: - Use clicks Forgot password on the login page of some application or IPA UI itself - System sends him a url with password reset form. Url should be valid for configurable time. - User clicks the link and gets to the page where he sets password with confirmation. - Page should give a hint about password policy. - User is redirected to the configured page
For future designer: FreeIPA already contains standalone password reset page on https://test.example.com/ipa/ui/reset_password.html . This page calls https://test.example.com/ipa/session/change_password . They of course don't provide the required functionality but they can serve as an inspiration or be extended to provide the functionality.
Metadata Update from @dpal: - Issue assigned to someone - Issue set to the milestone: FreeIPA Community Portal
Metadata Update from @pvoborni: - Issue close_status updated to: None
Metadata Update from @pvoborni: - Custom field rhbz adjusted to https://bugzilla.redhat.com/show_bug.cgi?id=1466014 (was: todo)
Issue linked to bug 1466014