Both previous and new password (internet pwd) are allways working with Verse/iNotes

Hi, when I change my password on Verse, both previous and new password (internet pwd) are allways working. Even 15 days after. Why ? ID password is synchronized, fortunately with then Notes Client, there is no problem, the old password doesn't work anymore.

Verse version : 3.0

Domino version : 12.0.2 FP1

Regards

Probing questions:

Is this issue only happen in Verse? Did you try to check with iNotes if the issue persist?
Are we talking about Verse Mobile or Verse on Web?

Possible Causes:

  • Replication issue if you have different server that administer the change vs server that you access for verse.
  • Browser caching, possible an issue with browser cache.

Internet password is cached for 48 hours as you can read in this technote https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0082132

You have to set the following notes.ini to prevent the caching of the old password

HTTP_PWD_CHANGE_CACHE_HOURS=0

This is issue on Verse Web and iNotes. I haved before set HTTP_PWD_CHANGE_CACHE_HOURS to 24 and I haved reboot all the servers before testing and testing. Replication between serveurs work fine.

Browser Cache Cleared twice !

Kind regards.

When using the old password I see error in Domino Log that
Server xxx reported the following problem causing authentication to fail: Wrong Password. (Passwords are case sensitive - be sure to use correct upper and lower case.)

BUT VERSE Let me enter the mail box !

It looks like server has already denied the authentication but still Verse is opening and this may be due to ACL of the mail file. Can you please check what is the Default ACL set to ? If it is set to anything higher than "No Access" then it can open without authentication.

Hi Joelle,

Can you check the last change date (internet password) is already been updated in the person document? If not, i suggest to manually update the Internet Password field in the person document.

Else, I suggest to open a case with HCL Support for this issue.

Regards,

Roberto

Hello @Joëlle Caumes,

Are you sure that the latest password is updated in respective users person document and replicated across all servers in your domain(Especially, verse server and user's home mail serve if both are different)?

As you are using Domino 12.0.2FP1. How is web user authentication configured in configuration document of all server (verse authentication server and user's Home mail server)?

There are three options as shown on attached screenshot. Default one is "Check Vault first, then directory".

Is the Notes client password and web password same or different?

I would suggest you to raise case with HCL support team for further investigation.

By enabling debugs, it may be possible to trace the issue.


Regards,

Chaitanya Y

if this issue is observed for only one user, then 1st you should check ACL access.