public ActionResult PasswordResetPincode(Guid token, PasswordResetPincodeModel model) { if (!ModelState.IsValid) { return(View(model)); } if (_smsAuthService.VerifyResponse(token, model.Sms)) { var tokenEntity = ScpContext.Services.Organizations.GetPasswordresetAccessToken(token); Session[WebDavAppConfigManager.Instance.SessionKeys.PasswordResetSmsKey] = model.Sms; Session[WebDavAppConfigManager.Instance.SessionKeys.ItemId] = tokenEntity.ItemId; return(RedirectToRoute(AccountRouteNames.PasswordResetFinalStep)); } AddMessage(MessageType.Error, Resources.Messages.IncorrectSmsResponse); return(View(model)); }