Page MenuHomePhabricator

During first-time setup, create an administrator account with no authentication instead of weird, detached authentication
ClosedPublic

Authored by epriestley on Feb 6 2019, 11:33 PM.
Tags
None
Referenced Files
Unknown Object (File)
Tue, Nov 5, 9:58 AM
Unknown Object (File)
Sun, Nov 3, 1:55 AM
Unknown Object (File)
Sun, Nov 3, 1:55 AM
Unknown Object (File)
Sun, Nov 3, 1:55 AM
Unknown Object (File)
Fri, Nov 1, 11:06 PM
Unknown Object (File)
Oct 22 2024, 12:43 AM
Unknown Object (File)
Oct 14 2024, 7:01 AM
Unknown Object (File)
Oct 13 2024, 6:31 AM
Subscribers

Details

Summary

Ref T6703. Currently, when you create an account on a new install, we prompt you to select a password.

You can't actually use that password unless you set up a password provider, and that password can't be associated with a provider since a password provider won't exist yet.

Instead, just don't ask for a password: create an account with a username and an email address only. Setup guidance points you toward Auth.

If you lose the session, you can send yourself an email link (if email works yet) or bin/auth recover it. This isn't really much different than the pre-change behavior, since you can't use the password you set anyway until you configure password auth.

This also makes fixing T9512 more important, which I'll do in a followup. I also plan to add slightly better guideposts toward Auth.

Test Plan

Hit first-time setup, created an account.

Diff Detail

Repository
rP Phabricator
Lint
Lint Not Applicable
Unit
Tests Not Applicable