Accept Reset Password
POST/password-srv/resetpassword?action=acceptreset
Accepts the new password after successful code validation or after the user opens the password reset magic link.
For complete usage guidance, see the user-initiated Password Reset Documentation.
Request
Responses
- 302
- 400
- 401
Redirect after accepting the reset. On success, Location points to the password_set_success page. On failure (for example a compromised password), Location includes error, error_description, and error_code query parameters.
Response Headers
- Success
- CompromisedPassword
Location
Redirect URL
Examples:
Password reset accepted
Example:
https://demo.cidaas.eu/identity/password_set_success?requestId=00c09206-032a-4f75-a251-3f1679591003&suggested_action=LOGIN&trackId=79485ee9-9c96-46ef-8372-99002d5a1402Password is compromised (blocked by password policy)
Example:
https://demo.cidaas.eu/identity/password_set?requestId=00c09206-032a-4f75-a251-3f1679591003&rprq=b7a146c6-fb72-42bd-8960-9219572cf697&exchangeid=3442e571-2859-4fce-ba50-269d5bfbefa8&resetMedium=email&error=Bad+Request&error_description=The+password+is+compromised&error_code=VER_0120Bad Request (validation or password policy failure)
Unauthorized