Hello, for our use case, we are trying to activate both passwordless and password using two different connections. Though, when creating a new database connection, the toggle for “Password” cannot be overwritten.
Flow:
- Identifier input (email)
- Check which db the email belongs. If passwordless, then show the OTP field, else show the password field.
Is this flow possible in the Auth0 dashboard configuration, universal login?
Hi @johnangelo.agravante
Welcome to the Auth0 Community!
I understand you are inquiring about configuring both Passwordless and Username/Password Connections for a single application within Auth0.
This configuration is currently not supported out-of-the-box in Auth0.
Root Cause
The primary reason for this limitation is that users can maintain multiple Auth0 accounts under the identical email address across different Connections. For example, a user could possess an account within a Passwordless Connection while simultaneously creating a distinct account in a Username-Password Database (DB). A Passwordless Connection in Auth0 is treated as a distinct connection type. Consequently, you cannot configure a standard Database to function as Passwordless, as a Passwordless Connection is structurally equivalent to a standard Database, Social Login Connection, or an Enterprise Connection.
Official Workaround: Custom User Interface Implementation
To achieve the described authentication flow without relying exclusively on pre-built Auth0 integrations, we recommend the following custom implementation:
-
Create a custom User Interface (UI) within your application.
-
Configure the custom UI to evaluate the authentication methods associated with the user and the connection_id of the Connection they are attempting to log in from.
-
Develop a custom logic flow that prompts the user for a specific Authenticator based on the retrieved connection data.
-
Implement User Account Linking to effectively manage instances where users maintain multiple accounts under a single email address. Please note that the architectural complexity of this custom build increases rapidly to accommodate all potential scenarios.
Official Documentation and Resources
For further context and guidance on Auth0 Passwordless and Universal Login capabilities, please reference the following Auth0 Developer Documentation and Community threads:
We hope this helped overcome the current roadblock, please do not hesitate to reach out to us in the future, for any other issues or requests.
Have a great one!
Gerald
Thank you for replying.
Follow up question, i am trying to create a new passwordless database connection, but i cant disbled the password authentication method,. it says “Disabling password is not yet supported”.
We will use this to create a custom flow for the login for our app,.
Hi @johnangelo.agravante
Thank you for the follow up!
I understand you are inquiring about the available approaches for configuring authentication in Auth0 without utilizing standard passwords, specifically regarding Passkeys and Passwordless configurations.
Currently in Auth0, there are two distinct approaches to achieve this:
Available Authentication Approaches
-
Configure a Database (DB) Connection with Passkeys: You can set up a standard Database Connection that utilizes a Passkey instead of a traditional password for user authentication.
-
Configure a Passwordless Connection: You can establish a separate Passwordless Connection using either Email or Short Message Service (SMS).
Important Structural Distinction
Please note that a Passwordless Connection is structurally distinct from a standard database integration; it is not a Database Connection. Consequently, a Passwordless Connection will appear independently within your Auth0 tenant dashboard under the Authentication tab.
Official Documentation and Resources
For further details on implementing these Auth0 configurations, please reference the following Auth0 Developer Documentation:
Have a great one!
Gerald