Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

feat(mongo)!: ttl for reset password tokens #1081

Open
wants to merge 13 commits into
base: master
Choose a base branch
from

Conversation

pradel
Copy link
Member

@pradel pradel commented Dec 12, 2020

BREAKING CHANGE: Upgrading to this version will invalidate all the existing reset password tokens.

Once you updated the dependency in your project and deployed your server, to cleanup the database and remove the old reset password tokens run:

db.collection('users').updateMany({}, { $unset: { 'services.password.reset': '' } });

Related to #935

@pradel
Copy link
Member Author

pradel commented Dec 12, 2020

I am not really happy with this approach, would be better if the password module sends the expiration date for the token, will try with another approach.

Edit: solved

@codecov
Copy link

codecov bot commented Dec 13, 2020

Codecov Report

Merging #1081 (f6937a6) into master (35c4c8c) will decrease coverage by 0.02%.
The diff coverage is 95.23%.

Impacted file tree graph

@@            Coverage Diff             @@
##           master    #1081      +/-   ##
==========================================
- Coverage   95.53%   95.50%   -0.03%     
==========================================
  Files          93       93              
  Lines        2150     2159       +9     
  Branches      424      426       +2     
==========================================
+ Hits         2054     2062       +8     
- Misses         94       95       +1     
  Partials        2        2              
Impacted Files Coverage Δ
...ages/database-mongo-password/src/mongo-password.ts 98.97% <94.11%> (-1.03%) ⬇️
packages/database-mongo/src/mongo.ts 98.71% <100.00%> (ø)
packages/password/src/accounts-password.ts 91.46% <100.00%> (ø)

Continue to review full report at Codecov.

Legend - Click here to learn more
Δ = absolute <relative> (impact), ø = not affected, ? = missing data
Powered by Codecov. Last update 35c4c8c...f6937a6. Read the comment docs.

@pradel pradel marked this pull request as ready for review December 13, 2020 14:17
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant