Skip to content

4.2 - MultiFactor GMP/bcmath requirement locks users out of site #38485

@PhilETaylor

Description

@PhilETaylor

Steps to reproduce the issue

Install Joomla 4.2.0 on a server without GMP and bcmath PHP Extensions
Login to Joomla Admin and Enable Multi Auth using an Web Authentication (Touch ID on Mac)
Joomla allows this, and secures your account.

Logout

Attempt to login again

Expected result

Expect to be prevented from locking myself and users, out of their accounts

Expect not to be able to SET UP and LOCK an account if the server then cannot authenticate that multi-auth authenticator due to server requirements not being met.

Actual result

Im now forever locked out of my account because I was allowed to enable multi-auth but my server doesn't have GMP or bcmath extensions and so I cannot login on the captive login page

Screen Shot 2022-08-16 at 22 53 50

Metadata

Metadata

Assignees

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions