Bug #15607

BE - QC1332 - HSM SDK - Password Encryption Enhancement

Added by Jimmy Phang almost 2 years ago. Updated over 1 year ago.

Status:ResolvedStart date:19 January 2023
Priority:NormalDue date:
Assignee:Jimmy Phang% Done:

100%

Category:-Spent time:-
Target version:-

Description

1. BE is currently hardcoded pbk & exponent string in the response of RetrieveSecInfo

When omni has fixed the issue, omni will return pbk & exponent string in the response of x_string.

Remark: BE needs to take out the hardcoded string as mentioned above.

2. Please assist to cater 1 mandatory field = password_Data_Block for FE to pass in during

- 3.3 Authenticate /user/authenticate –
- FE passes ‘password_data_block’ during PerformLogin

- 3.7 Verify Password user/verify_pwd
- FE passes ‘password_data_block’ during PerformVerifyPassword

- 3.6 Change Password user/change_password \
- FE passes ‘password_data_block’ during PerformChangePassword

QC1332 - HSM Encryptor.pptx (46.7 KB) Jimmy Phang, 19 January 2023 01:04 PM

History

#1 Updated by Shafiqah Rahni over 1 year ago

  • Status changed from New to Resolved
  • Assignee changed from Shafiqah Rahni to Jimmy Phang
  • % Done changed from 0 to 100

cbbd
Revision: 221191

cbws
Revision: 221149

Also available in: Atom PDF