← Back to plugin index

No mTAN Token Restriction

Description

Does not allow users without an mTAN token to perform public self-services and returns a corresponding feedback message.

For public self-service flows using mTAN identity verification, the purpose of this restriction is only to add an informative feedback message. This increases usability but could allow user enumeration since it makes it possible to find existing users without an mTAN token.

We recommend to configure this restriction as the last restriction to be checked.

Type name
NoMtanTokenRestriction
Class
com.airlock.iam.publicselfservice.application.configuration.restrictions.NoMtanTokenRestrictionConfig
May be used by
Properties
mTAN Handler (mtanHandler)
Description
Retrieves the user's mTAN tokens.
Attributes
Plugin-Link
Mandatory
Assignable plugins
YAML Template (with default values)

type: NoMtanTokenRestriction
id: NoMtanTokenRestriction-xxxxxx
displayName: 
comment: 
properties:
  mtanHandler: