Portal login token is more secure

To further enhance data security, the login token used for portal user authentication is now limited to single use within 24 hours. MSR-1056 | Feb 2025

Who is this relevant for?

If you use integrations and the endpoint /apexrest/msf/api/candidate/CreateLoginToken, the token generated there is now valid for a maximum of 24 hours and can only be used once. This helps prevent unauthorized use of a token.

Benefits:

Enhanced security for the portal login token.


All existing login tokens have expired.

A new login token must be generated for the user. We recommend continuing to generate tokens per request.

How it works in a nutshell
The Mysolution Swagger documentation provides further details on how this token functions.

Set-up
No additional configuration is required for this feature. For questions, contact your technical consultant.

 

🔗 Here you can find all features from the February 2025 Release.