Change signature counter update flag to false by default

Description

By default, every authentication updates the signature counter of a credential storage record (either provided per credential or authenticator). Given that no synching software authenticator provides this counter (it is always 0) and the tenuous security benefit of using it, I think it should default in v2 to false (or off). This means less writes to the storage service by default.

Environment

None

Activity

Details

Assignee

Reporter

Fix versions

Created February 19, 2025 at 11:46 AM
Updated February 19, 2025 at 11:46 AM