How to activate recovery for existing users

Hello,

We have been using waultwarden for a while and are pretty happy with it. I have told all my users that they must not loose their master password as I have no recovery solution.

Until an admin lost his password. I digged bit and found that I could activate recovery for an organization. However, it does not apply to existing accounts, and I have not found how to activate it.

Where is the documentation explaining how to enrol existing users in the recovery?

I have also 2 additional questions :

  • When recovery is enabled, any admin/owner can reset anyone’s password and get access to their personnal vault?
  • If yes, should 2FA be used to prevent that?

Regards,

See KlausBecker’s comment here Lost user-password, DELETE user and make new one

Short answer: Existing users need to enroll. If it’s turned on new users will auto-enroll.

Hello,

Thank you for the feedback. I eventually found how to enroll users. Any information regarding the additional question for personal vault safety and 2FA ?

Regards,