Jellyfin Forum
LDAP plugin old passwords usable? - Printable Version

+- Jellyfin Forum (https://forum.jellyfin.org)
+-- Forum: Support (https://forum.jellyfin.org/f-support)
+--- Forum: Troubleshooting (https://forum.jellyfin.org/f-troubleshooting)
+--- Thread: LDAP plugin old passwords usable? (/t-ldap-plugin-old-passwords-usable)



LDAP plugin old passwords usable? - noyouh - 2024-03-07

I've set-up LDAP authentication yesterday but noticed I was still able to log in with my previous password. Even after changing it a third time I was able to use all three! I have it set up through Authentik, with their LDAP server (without their Docker integration, if that matters).

New users work, I've also set the authentication method to LDAP in the user settings. My friend was also able to re-use an old password after changing it.

I've seen some posts online about the LDAP caching it perhaps? Does anyone know how I can get it to stop doing this?

Thanks in advance !


RE: LDAP plugin old passwords usable? - noyouh - 2024-03-07

Figured it out. It's probably a setting in the LDAP server caching it, since restarting the container revoked the old passwords immediately.

Anyone know if there's a setting in the Authentik LDAP container I can change?