Amazon Cognito adds admin API operation to reset user TOTP configurations
Share
Services
Amazon Cognito now provides a new admin API operation to reset a user's time-based one-time Password (TOTP) multi-factor authentication (MFA) configuration. When users lose access to their TOTP device, administrators can remove the device association, allowing the user to enroll a new device on their next sign-in. This removes the need to recreate accounts to recover locked-out users if they lose access to their TOTP device. Customers can maintain MFA enforcement while providing a recovery path. This new capability is available in all [AWS Regions](https://aws.amazon.com/about-aws/global-infrastructure/regional-product-services/) where Amazon Cognito is available. To get started, access the [AdminDeleteSoftwareToken](https://docs.aws.amazon.com/cognito-user-identity-pools/latest/APIReference/API%5FAdminDeleteSoftwareToken.html) API using the AWS CLI, SDKs, or APIs. See the [developer guide](https://docs.aws.amazon.com/cognito/latest/developerguide/user-pool-settings-mfa-totp.html#user-pool-settings-mfa-totp-remove) for instructions.
What else is happening at Amazon Web Services?
Read update
Services
Share
Amazon Connect Customer now supports points-based scoring in performance evaluations
about 9 hours ago
Services
Share
Read update
Services
Share
Read update
Services
Share