-
Notifications
You must be signed in to change notification settings - Fork 1.6k
Revoked user with enrolled password recovery can not rotate keys #7295
Copy link
Copy link
Open
Labels
Description
Steps To Reproduce
- Have a test org member which has enrolled password recovery. (No enforce data ownership)
- Revoke their access to the org
- Login with the revoked user
- Try to rotate the account's encryption keys
Expected Result
Password changed, and security keys rotated.
Actual Result
Simple error message An error has occurred.
The Developer console shows: All existing reset password keys must be included in the rotation.
Screenshots or Videos
Additional Context
No response
Build Version
2026.3.0
Environment
Self-Hosted
Environment Details
- Ubuntu 24.04
- Docker
ghcr.io/bitwarden/lite:latest
Issue Tracking Info
- I understand that work is tracked outside of Github. A PR will be linked to this issue should one be opened to address it, but Bitwarden doesn't use fields like "assigned", "milestone", or "project" to track progress.
Reactions are currently unavailable