Project

General

Profile

Actions

Feature #2652

closed

Create a task to generate new initialization vector for values in the confidential storage

Added by Alena Peterová over 3 years ago. Updated about 3 years ago.

Status:
Closed
Priority:
Normal
Assignee:
Alena Peterová
Category:
Confidential Storage
Target version:
Start date:
01/21/2021
Due date:
% Done:

100%

Estimated time:
Owner:

Description

Following #2355, we need some easy way to generate new initialization vector for existing values in the confidential storage. Please create a LRT, or script, which will do this.
This will be used for projects, which are upgraded from a version < 10.6. The values used hardcoded initialization vector, which is a security issue.


Note:
The following message can be seen when IdM uses hardcoded IV:

2021-01-20 16:44:24.129  WARN 206299 --- [http-nio-8080-exec-3] e.b.i.c.s.s.impl.DefaultCryptService.decrypt : IdM use old behavior with static vector. Please don't use this deprecated method.


Related issues

Related to IdStory Identity Manager - Task #2355: Confidential storage cipher uses hardcoded initialization vectorClosedOndřej Kopr07/01/202009/16/2020

Actions
Actions

Also available in: Atom PDF