Support for Email Authentication
The Windows Authentication Client now supports email as an authentication method. When a user selects email, RapidIdentity sends a one-time password to the alternate email address on the user's RapidIdentity profile, and the user enters the code to authenticate.
To use this method, the user must have a valid address in the Alternate Email field of their RapidIdentity profile. The email method is available in both connected and disconnected modes for domain and non-domain users, but is not available in offline mode.
Support for Offline MFA
Users can now complete multifactor authentication with the Windows Authentication Client when a device has no network connection. Users can enroll a WebAuthn method that uses a FIDO device or a one-time password method that uses a time-based one-time password.
For more information, see Offline Authentication Enrollment for the Windows Authentication Client.
Other Changes and Improvements
-
Screen reader accessibility updates for the Windows Narrator and Job Access With Speech (JAWS) provide a reliable login experience for all users.
-
The eye icon on password fields now scales based on the current screen size.
-
When the Windows Narrator is running, users can focus the narrator on labels and text blocks. When the Windows Narrator is not running, its focus cycles between user controls such as text fields, buttons, and tabs.
Resolved Issues
-
Fixed: When a user profile is locked, fast user switching is disabled, and interactive logon is enabled, other users are unable to log in.
-
Fixed: Disabled and locked users are able to change their Active Directory password via the Windows Authentication Client change password workflow.