Changeset 8343


Ignore:
Timestamp:
4 May 2012, 12:29:36 (13 years ago)
Author:
uli
Message:

Switch user auth to SSHA.

Location:
main/waeup.kofa/trunk/src/waeup/kofa
Files:
2 edited

Legend:

Unmodified
Added
Removed
  • main/waeup.kofa/trunk/src/waeup/kofa/authentication.py

    r7819 r8343  
    164164
    165165    def setPassword(self, password):
    166         passwordmanager = getUtility(IPasswordManager, 'SHA1')
     166        passwordmanager = getUtility(IPasswordManager, 'SSHA')
    167167        self.password = passwordmanager.encodePassword(password)
    168168
    169169    def checkPassword(self, password):
    170         passwordmanager = getUtility(IPasswordManager, 'SHA1')
     170        passwordmanager = getUtility(IPasswordManager, 'SSHA')
    171171        return passwordmanager.checkPassword(self.password, password)
    172172
     
    334334    if users is None:
    335335        return
    336     role_id = event.role_id
    337336    if event.principal_id not in users.keys():
    338337        return
  • main/waeup.kofa/trunk/src/waeup/kofa/userscontainer.txt

    r7819 r8343  
    4646
    4747    >>> bob.password
    48     '...15aca8166'
    49 
    50 Remark: that we can tell the last chars of the 'encrypted' password,
    51 means, that the encryption is broken or at least waeker as it should
    52 be.
    53 
    54 XXX: We could provide a stronger (correct) SHA encryption.
     48    '{SSHA}...'
    5549
    5650We can delete users:
Note: See TracChangeset for help on using the changeset viewer.