OpenSource Password Self Service known as PWM provides you a module to configure Forgotten password. The administrator can enable or disable this module. If enable the PWM can be configured for the forgotten password to allow the user recover their password responding security questions, responding required attributes or required email token.
- Require Responses
If enabled, the user will need to supply previously saved responses in order to proceed with forgotten password recovery.
- Require Email Token
If enabled, a token will be emailed to the user during the forgotten password process.
- Required Attributes
Required ldap attributes for challenge/response.
The image below display how some options are displayed to the user.
The image below display how to configure the forgotten password in the OpenSource Password Self Service
Require Responses