RC 60
jmhooper
released this
07 Aug 17:27
·
8522 commits
to main
since this release
Features
- Add PIV/CAC as a two factor authentication option #2234, #2237, #2244, #2250, #2253
- Allow dynamic service provider updates in production #2227
- Log ‘Password Changed’ event #2233
- Log ‘Personal Key Changed’ event #2217
- Offer all two factor authentication options during account creation #2099
- Increased the Reauthentication Timeout window from 2 to 5 minutes
Bugs and Enhancements
- Fix bug in enter phone number screen #2255
- Remove already initialized constant #2252
- Hide nonce from html #2236
- Upgrade Ruby from 2.3.5 to 2.5.1 #1997
- Improve request tracing #2245
- Add help text for SAM users on account creation screen #2230
- Update dependencies #2175, #2228
- Send ‘password reset link’ to confirmed email address #2182
- Prevent ‘password reset tokens’ from leaking to 3rd party sites #2214
- Fix validation bug on personal key screen #2215
- Fix rate limiting issues #2216, #2222