To further enhance data security, the login token used for portal user authentication is now limited to single use within 24 hours. MSR-1056 | Feb 2025
Who is this relevant for?
If you use integrations and the endpoint /apexrest/msf/api/candidate/CreateLoginToken, the token generated there is now valid for a maximum of 24 hours and can only be used once. This helps prevent unauthorized use of a token.
Benefits:
Enhanced security for the portal login token.
All existing login tokens have expired.
A new login token must be generated for the user. We recommend continuing to generate tokens per request.
How it works in a nutshell
The Mysolution Swagger documentation provides further details on how this token functions.
Set-up
No additional configuration is required for this feature. For questions, contact your technical consultant.
🔗 Here you can find all features from the February 2025 Release.