Lighthouse has a new layout. Prefer the old one? Return to the old layout, and switch back any time from the link at the top of each page.

Add Salt to User

#286

district- add key and next_key (which takes effect when users are uploaded)
passwordhash- Sha1.hex(shared_key + district_key + data + salt)

Reported by bendycode · June 2nd, 2009 @ 02:40 PM

State: resolved
Assigned to: shawn (at vegantech) shawn (at vegantech)

Activity

  1. bendycode
    bendycode
    • Milestone set to For final pilot meeting

    June 2nd, 2009 @ 02:45 PM

  2. bendycode
    bendycode

    Change how passwords are encrypted.

    Add the salt to User.
    Add password_key to District.
    Add next_password_key to District. (That will become "password_key" when a new set of users are uploaded.)

    Have a shared key that does not live in the database. Lives in system?

    June 2nd, 2009 @ 02:56 PM

  3. shawn (at vegantech)
    shawn (at vegantech)

    (from [ed31e56feec29c4e7fc697f3e6dafd9a3b83a361]) [#286] added migration for salt, key and next_key, and adjusted encrypted password. Still needs tests and account creation http://github.com/vegantech/sims/commit/ed31e56feec29c4e7fc697f3e6d...

    June 4th, 2009 @ 09:22 AM

  4. shawn (at vegantech)
    shawn (at vegantech)

    Allow existing passwordhashes to work prior to creation of SystemKey or district key (or any combination.)

    June 5th, 2009 @ 12:23 PM

  5. shawn (at vegantech)
  6. shawn (at vegantech)
  7. shawn (at vegantech)
  8. shawn (at vegantech)
  9. shawn (at vegantech)
  10. shawn (at vegantech)
  11. shawn (at vegantech)
    shawn (at vegantech)
    • Assigned user set to shawn (at vegantech)
    • State changed from new to resolved

    June 22nd, 2009 @ 07:30 PM

Please Sign in or create a free account to add a new ticket.

With your very own profile, you can contribute to projects, track your activity, watch tickets, receive and update tickets through your email and much more.