Rocket.Chat icon indicating copy to clipboard operation
Rocket.Chat copied to clipboard

Correct E2E password does not work in RC 5.4.0 on consecutive logins

Open Gummikavalier opened this issue 3 years ago • 0 comments

Description:

Reset E2E password does not work on consecutive logins.

Resetting E2E key works but the offered key is not accepted on consecutive logins.

Steps to reproduce:

  1. Enable E2E in admin settings
  2. Login as usual into RC
  3. Type in your existing E2E-password, or copypaste the new one you got, or reset your password or key

Expected behavior:

The new E2E-password should be queried at the top of the page on consecutive logins. The new password should be accepted as a correct one.

Actual behavior:

The new key password is not queried at all on consecutive logins (no banner visible). You cannot copypaste the new password anywhere safe as it is not shown at all.

At this stage after you change the E2E password under your profile settings, after the next login you finally see the banner to type the password in. However the correct password is claimed to be wrong. Screenshot from 2022-12-07 08-34-08

Server Setup Information:

  • Version of Rocket.Chat Server: 5.4.0
  • Operating System: RHEL8
  • Deployment Method: tar
  • Number of Running Instances: 2
  • DB Replicaset Oplog: Yes
  • NodeJS Version: 14.19.3
  • MongoDB Version: 4.4

Client Setup Information

  • Desktop App or Browser Version: Latest Firefox and Chrome

Additional context

Also reproducible at open.rocket.chat.

E2E password management still worked in RC 5.3.x.

Gummikavalier avatar Dec 07 '22 06:12 Gummikavalier