-
Notifications
You must be signed in to change notification settings - Fork 143
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
user journey that does not create duplicate accounts #49
Comments
It is indeed possible.
For your second issue, I assume you are talking about there are already two accounts and you would like to merge them. In the policy, technically you can have a AAD technical profile to delete one account, merge their claims and update the other account. The caveat here is that the relying website need to handle the merge case for example, how to merge the reward points of two users. |
@xinaxu Is it possible to have an example how to accomplish the step in the policy to do the account discovery in AAD that you suggested? |
It can be achieved using Validation Technical Profiles and Preconditions. https://docs.microsoft.com/en-us/azure/active-directory-b2c/validation-technical-profile
|
We don't care if the user does not have a verified email or is not showing the email in the consent, what we want is a fluid and intuitive user journey for 99% of the cases. As I explained with the documented wingtipgamesb2c example, the current demo policies are not implemented as a good reference and whoever did this docs/examples could fix this with the suggested pre-condition. At least not creating a duplicate AAD entry when the verified email is a match (precondition). |
@canoas did you eventually manage to get this working? It was the first question from the business "Why are there duplicates created" on a new project I'm working on. |
Is it possible to simply merge an account when the same email is already verified in an existing account?
How to reproduce:
use same facebook (Email1) and we get this error:
ISSUE 2: Merge is not possible without first deleting an account
Is any of these issues possible to customize by using this policy framework?
thank you
The text was updated successfully, but these errors were encountered: