shy-wall-7656
06/12/2024, 5:19 AMmagnificent-energy-493
selfservice:
methods:
code:
passwordless_enabled: true
shy-wall-7656
06/13/2024, 6:58 AMshy-wall-7656
06/18/2024, 4:15 AMdazzling-napkin-4938
06/18/2024, 7:27 AMafter settings
hook. Your external system would need to store the user’s last 5 password hashes, and reject (return a 40x error) if they reuse itdazzling-napkin-4938
06/18/2024, 7:28 AMshy-wall-7656
06/25/2024, 12:56 PMmagnificent-energy-493
magnificent-energy-493
One of our requirement is to send otp over email for each login flow after correct password is entered even if email id is verified already.Do you mean you want to require a second factor on login?
shy-wall-7656
06/27/2024, 6:05 AMmagnificent-energy-493
?aal=aal2
parameter. This will prompt them to input their second factor
see the docs here
https://www.ory.sh/docs/kratos/mfa/step-up-authentication