Safest way to use auto login?
What is the safest way to use auto login in emails. Maybe let all wordpress admin users leave all apaces? Is this possible. And only use wordpress accounts with role subcriber as community admin?
Mat βΒ Yeah I remember your comments. I think I will remove the WP Admin from the community and manage the community with a differant community admin account. This should work right?
Sam JansenΒ I don't think you can completly remove the Super Admin from your Fluent Community since the Super Admin can access it at any time.
I am not sure if in the above case scenario the Super Admin Magic Link will be secure or if it will also work in some way (fCommunity Magic Link is either ON or OFF without the wp-admin RBAC - Role Based Access Control I guess).
I don't know if the fCommunity Magic Link can be applied to the Subscriber role only.
I didn't verify it yet but you asked really good question.
PS. It would be nice to have an option to enable/disable email confirmation for fCommunity Magic Links usage for all Admins although the notification could not prevent wp-admin bad actor disaster haha
Mat βΒ I see you can leave spaces as Super Admin. This would atleast solve the issue. That Super Admins would receive post notifications.
Sam JansenΒ but let's imagine if this is the only way (to trigger mail notifications) when fCommunity magic links are active for the Super Admin.
Example:
When you use @SuperAdminUserName as a mention in a Public Space post the email notification is still send to the Super Admin with the Magic Link?
Note: Super Admin user name should be excluded from the Leaderboard, @mentions and user Profile (URL) to minimize the SuperAdminUserName completly instead of giving bad users hint/vector: for the word dictionary attack or some MagicLinks tricks.
Mat βΒ with this disable for super admin there will be no email sent?
Sam JansenΒ email notification settings should eliminate email triggers for SuperAdmin. But I am not sure if this would disable the Magic Link possibility to log-in - in theory... if you could generate any Magic Link would it work for SuperAdmin user in this case.
I know it sounds ridiculous but I didn't find the answer so I am still in doubt.
I hope Njnjas will answer your question and/or implement the right solution.
Of course I am not expecting that someone will try to hack you or me but I don't know all the details behind how it works. When someone/something is Disabled by user role (Security by Design) there is no need to hide just the "top layer".
I am not sure in which direction this plugin will be developed and what other new features will be implemented but for now maybe the solution you mentioned is sufficient.
Mat βΒ From what I see is that auto login hashes are only created at the moment when an email is sent. See screenshots also with some security improvements.
Sam JansenΒ You Win!
When a MagicLink/hash cannot be generated and stored for SuperAdmin then it cannot be used.