I also take this opportunity to propose the possibility of setting up a robust password management policy: For example, implementing a rule stating that passwords must consist of a minimum of 12 characters, including uppercase letters, lowercase letters, numbers, and special characters. Several of our applications contain confidential and sensitive information, and our clients would like to be able to enforce strong passwords for community members. Currently, there are no minimum requirements in place: a member can easily change their password to something as simple as "1234".
Agreed. And while we’re on the subject of security, setting up 2FA for admin login should also be a feature.
Important!
I fully agree! This would be extremely helpful.
Making robust authentication is crucial. As of now GoodBarber authentication module looks like it was made by scholar. Not only overall password resets, but overall process. Emails are non customizable, sent from GoodBarber mail domain. Almost 0 implementation of modern way to authenticate, change passwords etc.