-
Hello! I have been looking into how TOTP and recovery codes work in Kratos. I was able to configure them for my user and then log in with AAL2 using TOTP. However, I couldn't figure out how to recover the account if my device with the TOTP authenticator is lost.
If I go through the flow and then curl the link I get in the email, I get redirected to settings, which then return an error because I'm only on AAL1. If I call I can't find more information in the documentation. What is the correct way to recover account access using recovery codes when the MFA device is lost? Edit: I tried two more approaches, but without success:
|
Beta Was this translation helpful? Give feedback.
Replies: 1 comment 7 replies
-
You need backup recovery codes :) They are called lookup_secret |
Beta Was this translation helpful? Give feedback.
You need backup recovery codes :) They are called lookup_secret