Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Discussion] Should usernames be case sensitive? #3507

Open
joyce-x-chen opened this issue Sep 17, 2024 · 0 comments
Open

[Discussion] Should usernames be case sensitive? #3507

joyce-x-chen opened this issue Sep 17, 2024 · 0 comments

Comments

@joyce-x-chen
Copy link
Contributor

joyce-x-chen commented Sep 17, 2024

Describe the issue
When testing the GIZ PATH EIR Product Suite, I noticed that username is not case sensitive when logging in through the app. Is this by design, a bug, or not yet decided?

(Note: password is case sensitive, as it should be)

Additional context
Case sensitive usernames may offer slightly more security, but we would also want to prevent duplicate user names (with different case variations) from being created - both in the Web UI and via bulk upload.

Acceptance criteria
Whatever is decided, it should be consistently implemented throughout the platform, with a constraint message as appropriate:

  • Web frontend (creation, editing, view)
  • Bulk import (creation, editing)
  • App (login)
  • Keycloak (configuration? please elaborate...)
  • etc (please elaborate)

Recommended next steps
Product team to discuss this and come to a decision.

cc: @f-odhiambo @dubdabasoduba @ageryck @allan-on @ndegwamartin @pld @rowo

@joyce-x-chen joyce-x-chen changed the title [Discussion] Should usernamed be case sensitive? [Discussion] Should usernames be case sensitive? Sep 17, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant