https://redmine.czechidm.com/https://redmine.czechidm.com/themes/purplemine2/favicon/favicon.ico?16339658642018-11-23T12:14:20ZIdStory Identity ManagerIdStory Identity Manager - Defect #1388: Password is not sent when retrying Create operationhttps://redmine.czechidm.com/issues/1388?journal_id=68652018-11-23T12:14:20ZRadek Tomiškaradek.tomiska@bcvsolutions.eu
<ul></ul><p>Maybe duplicate with <a class="issue tracker-4 status-5 priority-1 priority-lowest prio-name-low closed" title="Defect: When account creation is cancelled from the provisioning queue, then next account creation doesn'... (Closed)" href="https://redmine.czechidm.com/issues/1238">#1238</a>?</p> IdStory Identity Manager - Defect #1388: Password is not sent when retrying Create operationhttps://redmine.czechidm.com/issues/1388?journal_id=68662018-11-23T12:16:46ZAlena Peterováalena.peterova@bcvsolutions.eu
<ul></ul><p>I don't think so, this can be reproduced without cancelling operations in the queue, <a class="issue tracker-4 status-5 priority-1 priority-lowest prio-name-low closed" title="Defect: When account creation is cancelled from the provisioning queue, then next account creation doesn'... (Closed)" href="https://redmine.czechidm.com/issues/1238">#1238</a> happened only when the previous operation was cancelled. Also I'm 95 % sure this issue didn't happen in previous versions.</p> IdStory Identity Manager - Defect #1388: Password is not sent when retrying Create operationhttps://redmine.czechidm.com/issues/1388?journal_id=68672018-11-23T12:29:08ZAlena Peterováalena.peterova@bcvsolutions.eu
<ul></ul>Also this has higher priority, because it brings problems in the systems:
<ul>
<li>if the system enables empty password, then the account without password is created and anybody can log into it</li>
<li>if it's AD connector, then the account in AD is created, but the connector isn't able to set password to it so the operation returns error. The result is inconsistent state of accounts.</li>
</ul> IdStory Identity Manager - Defect #1388: Password is not sent when retrying Create operationhttps://redmine.czechidm.com/issues/1388?journal_id=68682018-11-23T12:32:08ZRadek Tomiškaradek.tomiska@bcvsolutions.eu
<ul><li><strong>Related to</strong> <i><a class="issue tracker-4 status-5 priority-1 priority-lowest prio-name-low closed" href="/issues/1238">Defect #1238</a>: When account creation is cancelled from the provisioning queue, then next account creation doesn't send password for the account</i> added</li></ul> IdStory Identity Manager - Defect #1388: Password is not sent when retrying Create operationhttps://redmine.czechidm.com/issues/1388?journal_id=68702018-11-23T12:33:25ZOndřej Kopr
<ul><li><strong>Status</strong> changed from <i>New</i> to <i>In Progress</i></li></ul> IdStory Identity Manager - Defect #1388: Password is not sent when retrying Create operationhttps://redmine.czechidm.com/issues/1388?journal_id=68742018-11-23T12:59:46ZOndřej Kopr
<ul><li><strong>% Done</strong> changed from <i>0</i> to <i>10</i></li></ul><p>Alca I confirm the issue. The problem is by get value from confidential storage and transform it back to password Attribute. Thanks for report this issue.</p> IdStory Identity Manager - Defect #1388: Password is not sent when retrying Create operationhttps://redmine.czechidm.com/issues/1388?journal_id=68792018-11-26T11:34:32ZOndřej Kopr
<ul><li><strong>% Done</strong> changed from <i>10</i> to <i>70</i></li></ul><p>After consult I add newly generated password also into account object not only in connector object (in frontend detail it is left and right side table in provisioning operation detail).</p>
Next information:
<ul>
<li>generated password/s will be still stored in confidential storage,</li>
<li>transformation for password is done only once, during init the provisioning operation,</li>
<li>in confidential storage is created two records for one password attribute (with these keys: sys:connector:: and sys:account::),</li>
<li>in account object exists ConfidetialString that contains key for confidential storage,</li>
<li>in connector object exists instance of guarded string with transformed password,</li>
<li>password change works same.</li>
</ul>
<p>Tests missing.</p> IdStory Identity Manager - Defect #1388: Password is not sent when retrying Create operationhttps://redmine.czechidm.com/issues/1388?journal_id=68802018-11-26T13:31:54ZOndřej Kopr
<ul><li><strong>Status</strong> changed from <i>In Progress</i> to <i>Needs feedback</i></li><li><strong>Assignee</strong> changed from <i>Ondřej Kopr</i> to <i>Vít Švanda</i></li><li><strong>Priority</strong> changed from <i>High</i> to <i>Normal</i></li><li><strong>Target version</strong> set to <i>Opal (9.4.0-rc.1)</i></li><li><strong>% Done</strong> changed from <i>70</i> to <i>90</i></li></ul><p>The bug was fixed. Provisioning operation now contains generated password for connector object and account object. Test is included.</p>
<p>Commit: <a class="external" href="https://github.com/bcvsolutions/CzechIdMng/commit/bc7370d4bcd63f2a8223530706ea5ee3cb8f910b">https://github.com/bcvsolutions/CzechIdMng/commit/bc7370d4bcd63f2a8223530706ea5ee3cb8f910b</a> (branch develop)<br />commit test: <a class="external" href="https://github.com/bcvsolutions/CzechIdMng/commit/6c6bc23b876961a7481c7729bc5f47d571f57349">https://github.com/bcvsolutions/CzechIdMng/commit/6c6bc23b876961a7481c7729bc5f47d571f57349</a> (branch develop)</p>
<p>Please Vitek could you make a review? Issue can be simulated only by read only system.</p> IdStory Identity Manager - Defect #1388: Password is not sent when retrying Create operationhttps://redmine.czechidm.com/issues/1388?journal_id=68862018-11-26T14:15:36ZOndřej Kopr
<ul></ul><p>I must remove TestResource_ from tests because metamodel on jenkins doesn't work as I except.<br />Commit: <a class="external" href="https://github.com/bcvsolutions/CzechIdMng/commit/1aee82a7328c0cc6b45372ecc306e66bbfd4f7cc">https://github.com/bcvsolutions/CzechIdMng/commit/1aee82a7328c0cc6b45372ecc306e66bbfd4f7cc</a> (develop)</p> IdStory Identity Manager - Defect #1388: Password is not sent when retrying Create operationhttps://redmine.czechidm.com/issues/1388?journal_id=69072018-11-28T10:50:34ZOndřej Kopr
<ul><li><strong>Related to</strong> <i><a class="issue tracker-4 status-5 priority-2 priority-default prio-name-normal closed" href="/issues/1392">Defect #1392</a>: Audit can't be viewed after retrying a password change or account create</i> added</li></ul> IdStory Identity Manager - Defect #1388: Password is not sent when retrying Create operationhttps://redmine.czechidm.com/issues/1388?journal_id=69272018-12-03T15:57:22ZAlena Peterováalena.peterova@bcvsolutions.eu
<ul></ul><p>It works now correctly, thank you.</p> IdStory Identity Manager - Defect #1388: Password is not sent when retrying Create operationhttps://redmine.czechidm.com/issues/1388?journal_id=70502018-12-13T12:52:12ZVít Švanda
<ul><li><strong>Status</strong> changed from <i>Needs feedback</i> to <i>Resolved</i></li><li><strong>Assignee</strong> changed from <i>Vít Švanda</i> to <i>Ondřej Kopr</i></li><li><strong>% Done</strong> changed from <i>90</i> to <i>100</i></li></ul><p>I did review and tested it. Works fine, thanks for that.</p> IdStory Identity Manager - Defect #1388: Password is not sent when retrying Create operationhttps://redmine.czechidm.com/issues/1388?journal_id=70532018-12-13T14:09:11ZOndřej Kopr
<ul><li><strong>Status</strong> changed from <i>Resolved</i> to <i>Closed</i></li></ul>