Google MFA Authenticator subject should be the URL not just "Mattermost"
Summary
When using "Scan barcode" to automatically configure Google Authenticator for MFA the subject is always "Mattermost".
Steps to reproduce
- Enable LDAP.
- Enable Multi-factor authentication.
- When a user scans the barcode to configure Google Authenticator the subject of the account is always Mattermost.
- If you use couple of instances of Mattermost (example test+prod) you can't distinguish which code to use and can't login to Mattermost.
Expected behavior
- The subject of the account should be the url of the Mattermost instance you are configuring MFA for.
4
votes
Georgi
shared this idea
-
Andreas Muehlemann commented
Expected behavior:
URL or a configurable string would also be appreciated