qpid-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "ASF subversion and git services (JIRA)" <j...@apache.org>
Subject [jira] [Commented] (QPID-7067) Scram SHA upgrader loses the original password
Date Mon, 15 Feb 2016 15:17:18 GMT

    [ https://issues.apache.org/jira/browse/QPID-7067?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15147456#comment-15147456
] 

ASF subversion and git services commented on QPID-7067:
-------------------------------------------------------

Commit 1730547 from [~lorenz.quack] in branch 'java/trunk'
[ https://svn.apache.org/r1730547 ]

QPID-7067: [Java Broker] Fix Scram password upgrade code to not loose passwords upon upgrade

* Workaround by temporarily disabling password encoding mechanism in case we are upgrading.

> Scram SHA upgrader loses the original password
> ----------------------------------------------
>
>                 Key: QPID-7067
>                 URL: https://issues.apache.org/jira/browse/QPID-7067
>             Project: Qpid
>          Issue Type: Bug
>          Components: Java Broker
>            Reporter: Keith Wall
>            Assignee: Lorenz Quack
>             Fix For: qpid-java-6.0.1, qpid-java-6.1
>
>
> The Scram-SHA upgrader introduced by QPID-6993 loses the original password.  It mistakenly
re-encodes the encoded password (salt/storedkey/serverkey) and saves that as the password.
 The original password is lost.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

---------------------------------------------------------------------
To unsubscribe, e-mail: dev-unsubscribe@qpid.apache.org
For additional commands, e-mail: dev-help@qpid.apache.org


Mime
View raw message