@njanaskie I don't have any experience with that flow. Hopefully someone that may have had some experience with this can chime in.
Posts made by mark.robustelli
-
RE: Update on supporting discoverable WebAuthn credentialsposted in Q&A
-
RE: Update on supporting discoverable WebAuthn credentialsposted in Q&A
@njanaskie said in Update on supporting discoverable WebAuthn credentials:
You are right. FusionAuth does not support discoverable WebAuthn passkeys. In the page you referred to, there is some verbiage that states that directly in the credential.clientExtensionResults.credProps.rk section.
'FusionAuth does not currently support discoverable credentials (sometimes referred to as "resident keys").'
I'd recommend checking the FusionAuth GitHub issues or opening/upvoting a feature request to track progress on this.
Maybe if you tell us a little more about your use case and why the user can't enter the username/email someone can help with a work around.
-
RE: CI/CD Deployment of FusionAuth with Automatic Registrationposted in General Discussion
@nikola Have you checked out our kickstarts or APIs? You should be able to apply the license keys and configure your environments as needed.
If this isn't what you mean, please just give me a little more detail on what you are trying to do and I'll help the best I can.
-
RE: Unable to Reset Locked Account Password when MFA Enabledposted in Q&A
@anthea-mo It looks like the fix is to upgrade.
I also found this on the users accounts being locked.
If this information does not get you where you need, please let me know.
-
RE: Upgrading 1.64.1 to 1.65.0 never bootsposted in General Discussion
@mqwirtnuf How's it going? Can you share your upgrade process?
-
RE: Forgot Passwordposted in Q&A
@johnmiller I'm not 100% sure but that may be by design. You don't want to give away too much information. If it returned a specific error code, then you would know if the user exists or not.
-
RE: Send custom query param to identity provider (screen_hint)posted in Q&A
@elliotdickison Can you let us know what third party OIDC IdP you are working with?
-
Shipped: Q1 2026posted in Announcements
It's one thing to read about new features in the release notes and another to see them demo'd. If you're interested in what FusionAuth has been up to, come check it out tomorrow in our Q1 2026 edition of Shipped!
-
RE: Minimum Role Needed to Edit Specific Tenant Settingsposted in General Discussion
@batmysta I know this is a bit of a "trick" answer, but the reality is the right answer depends on what exactly you want the user to have access for. I understand that the roles in FusionAuth may give more access than you may like (I.E. MFA is a tenant level settings, but there is no role just for MFA edit.), but there are some other options.
Again, depending on what you want to do and what version you are running, there is the idea of the Tenant Manager applicaiton. This will still not help you with MFA settings thought.
The other option is using the APIs. Since everything in The FusionAuth admin UI is API first, you could create your own application that would allow users you choose to edit them.
Hope this is useful.
-
RE: The request origin could not be verified. Unable to complete this login request with same-instance cross-tenant IdP federationposted in Q&A
@hvfa Apologies for being a bit AWOL. I hope for things to slow down and be able to take a look at this a little more closely next week.
-
RE: The request origin could not be verified. Unable to complete this login request with same-instance cross-tenant IdP federationposted in Q&A
@hvfa At first glance this looks like a domain issue. Can you share an example of how your Authorized redirect URLs and Authorized request origin URLs are set up in relation to the applications. Please feel free to use example domains like https://domain1/ or https://domain2 and so on. It may also be useful to give the other OAuth settings for the applications as well (be sure to redact or obscure and sensitive information).
-
RE: Struggling to backup selfhosted fusionAuth.posted in Q&A
@ralph Thanks for following up and sharing!
-
RE: Struggling to backup selfhosted fusionAuth.posted in Q&A
@ralph Are you getting the same errors? I did see a reference to trying pg_dump vs pg_dumpall. Can you try that and let us know if it works?
-
RE: SAML authnRequest exceptionposted in General Discussion
@james-hudson You may want to check out this blog post. Hopefully that can help.
-
RE: Weird behavior for OpenID connect login after 1.62 upgrade - MS prompts to verify emailposted in General Discussion
@scottw Hopefully, I can get a little time over the next couple of days and see if I can duplicate it. I will let you know if I find anything. Anyone else seeing his behavior?
-
RE: Admin UI actions over themes blocks application since 1.61.2posted in General Discussion
@david-cuen Thanks for your patience and dedication to seeing this through. It would help a ton if you could find something reproducible. Let me know what you find and I can continue to try it on this end.
-
RE: Admin UI actions over themes blocks application since 1.61.2posted in General Discussion
@david-cuen This is really weird. I was not able to replicate it. There is one more thing I may try later if I get some time. That is to make one template that big and try that.
In the mean time, I went back to look at the error message. "Premature EOF" and the fact that it was working on a windows box has be back to believing that a funky character or something is causing the error on the linux box. I wish we could narrow it down. Have you tried to install into another linux environment, EC2 for example, and see if you get the same issue? (That may tell us if it is a linux thing or if it is your one specific environment.) Also, someone mentioned to ask if you have any proxies running in front of FusionAuth?
-
RE: Admin UI actions over themes blocks application since 1.61.2posted in General Discussion
@david-cuen I wasn't able to find much else out on Friday. Awesome that it looks like you have it narrowed down to the size. I will try to replicate this. I will let you know if I can.


