to {2}{2} on the default ZITADEL instance/org, after which we were able to log in again.
A few questions:
What could have caused this 2FA requirement to become active unexpectedly? Is there any known path where org or instance login policy can inherit or switch MFA settings without an explicit admin action? Are there specific tables, events, or logs we should inspect to understand who or what changed the login policy? Is manually changing projections.login_policies% known to be unsafe here, and if so, what would be the correct emergency recovery procedure for self-hosted setups when all admins are locked out?
We would mainly like to understand the root cause and the recommended recovery path for this situation.
Thanks.
Continue the conversation
Join the Discord to ask follow-up questions and connect with the community
Z
ZITADEL
ZITADEL - Identity infrastructure, simplified for you.