Skip to main content

 Services

Web services from /about to /webhooks

force reset password

/members/forceresetpassword [POST]

com.pageseeder.member.ResetPassword

Description

Reset password as an administrator.

Resets the password for the user if all parameters are correct.

Workflow

To identify the member, either the member-username or member-email address is required.

The reset password is done in two steps:

  1. The system sends an email asking for confirmation of reset password (with a token) to the user.
  2. The user then confirms the request by sending the token to the system. If everything matches, a new password is set and a notification email sent to the user to confirm the password update.

This service can be used for both steps.

  • If no member-password is specified, this service sends one by email to the member.
  • Otherwise, this service attempts to update the password as specified in the member-password parameter.

Email templates

This service uses the default PageSeeder templates.

To use customized emails, use the globalTemplate global property or use the following service instead:
 /groups/{group}/members/forceresetpassword.

Parameters

NameDescriptionRequiredTypeDefault value
emailThe member’s email addressyes, if no usernameemail
member-passwordThe member’s new passwordnostring
member-usernameThe member’s usernameyes, if no emailstring
notify-asyncWhether emails should be sent asynchronously (for slow email servers)nobooleanfalse

Permission

This service requires administrator.

Response

When no  member-password is specified, then an email confirming the reset password request is sent to the member (step 1) and the XML output is:

<reset-password status="request-successful" />

If member-password is specified and the member has the correct confirmation token, then the new password is set, notification is emailed to the member and the XML output is:

<reset-password status="password-changed" />

Error Handling

CodeCause / Description
0x1008If the email and username are empty (for admins only)
0x1002If the email address is invalid
0x100EIf no member was found (for admins only)
0x1018If the member is an API account
0x1019If the account is locked
0x100FIf the member has no email address
0x102AIf the reset password token is invalid
Created on , last edited on