"Strength: good" for password that doesn't even meet the requirements

Bug #1015504 reported by Matthew Paul Thomas
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
Canonical SSO provider
Fix Released
Undecided
Unassigned

Bug Description

1. Go to <https://login.ubuntu.com/+logout>.
2. Go to <https://login.ubuntu.com/+new_account>.
3. Tab to the "Choose password" field.
4. Type "abc1234".

What happens:
3. The field has a caption below it, "Password must be at least 8 characters long, and must contain at least one number and an upper case letter."
4. "Strength: good" appears next to the field, despite it being only 7 characters and containing no upper-case letters!

What should happen: some combination of
3. more flexible requirements for passwords (bug 821727), and
4. the strength meter showing up only for passwords that meet the basic requirements.

Revision history for this message
Daniel Manrique (roadmr) wrote :

This is fixed now: the strength meter only shows if password meets the minimum length req (8 characters, see bug 821727) and the case/number requirements have been removed.

Changed in canonical-identity-provider:
status: New → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.