From 0ca25d010cf89bd5db962eab12203fac117d75f1 Mon Sep 17 00:00:00 2001 From: Martin Weise <martin.weise@tuwien.ac.at> Date: Wed, 26 Feb 2025 21:26:01 +0100 Subject: [PATCH] Password age is buggy Signed-off-by: Martin Weise <martin.weise@tuwien.ac.at> --- dbrepo-auth-service/dbrepo-realm.json | 2 +- .../target/create-event-listener.jar | Bin 10138 -> 10143 bytes helm/dbrepo/files/create-event-listener.jar | Bin 10138 -> 10143 bytes helm/dbrepo/templates/auth-configmap.yaml | 2 +- 4 files changed, 2 insertions(+), 2 deletions(-) diff --git a/dbrepo-auth-service/dbrepo-realm.json b/dbrepo-auth-service/dbrepo-realm.json index 668dc4cbfe..f05e6f347f 100644 --- a/dbrepo-auth-service/dbrepo-realm.json +++ b/dbrepo-auth-service/dbrepo-realm.json @@ -1172,7 +1172,7 @@ }, "defaultGroups" : [ "/researchers" ], "requiredCredentials" : [ "password" ], - "passwordPolicy" : "length(8) and maxLength(64) and specialChars(1) and lowerCase(1) and upperCase(1) and digits(1) and passwordAge(30)", + "passwordPolicy" : "length(8) and maxLength(64) and specialChars(1) and lowerCase(1) and upperCase(1) and digits(1)", "otpPolicyType" : "totp", "otpPolicyAlgorithm" : "HmacSHA1", "otpPolicyInitialCounter" : 0, diff --git a/dbrepo-auth-service/listeners/target/create-event-listener.jar b/dbrepo-auth-service/listeners/target/create-event-listener.jar index 61046f026663169b343724b8275c9be7ef2af9ee..7072823dcbcc2d91dab2624b91f1e47fad47dbff 100644 GIT binary patch delta 1119 zcmbQ`Ki^+Cz?+#xgn@yBgJILEsHkI4WHU=A3M<wh%zLaLus8aX{RifTyEpt^M^Bd9 z6}W5arDfj@d(1V=`V!vc{M&aVGd6e2t+$L4Gmh^$E<NwSEGgTM<|X$^wxz7}c$D!{ zfWtI?j@LI9=BTpwSI+UgxZ#tMeq@n(?=$Va&-K|u9^SI)J2!D<FB8|)AFCI#c`ws$ zZ|`&Vw|;k#*RB4cY0;y7lHT#^Yv0A34C_8u9X9s{n`t#m*JAm%3lECv{+<7x>lgdN z6aOduS9@NzS?^}wiwEAC{l^y@Y!$yE&l|<)#o(Eo%|0(?{fhDzPhIErEKVp9oF>X+ z@X<CQ^?+add|A$GcGY$798NB{>T33`-bs4iZnJIwZQrTaC_3@~tk-!ee?$E0r_^*^ zEve6OTc7GXKb~N8X7@g!RoPGF{8zn9uxC|LSt|9P>9}GBAOG{-k1b+%mwsSlFJ8E} zb=Nw@{i~l<PI@|XR=8)EmH(uhxw8)PT$)|k7`agY`?hsIi{8acsaU$)WaGbBn<?4K z;wT^0G_mjtA1E%k7#KJh7??M$ikiHhQH6Qqs;J4=7<IvXHYPbRt<Izhru~_;z;q3h z37Fo@<ONbciTNyuntXw|8zj6rj%5xLnDLj5n-k377MR5gVodH*oV9tW>?39{M_p+$ zCp-;IKCEO37X7azUB8@>fx*``#8KDN&rLtTn~_O`8RE>1tD>S9kbn@JEx_>B@f@<Y z;?$zD%;eN!6#XFU;93|M7?|N4kp6#+3=D}S`T=f8Hlpj`LeU}51lCbfTArDjhi=p4 z`^wUc?vsBjLqbtTMVhf>a=nU-HnNY<&DTdUfA!>g6+3X?9#D~H`oT1rpIJ)>q8*Zl zKmp?On`M<A0|SE&0|SE-Tss59lExFvlkYRTplATu_y1G#Zhs~QhHI=03`Qs#!dNEf zvY23K;QlB0=N1P8!#V*51~C*3U)d(}uuDvqR^tIjo|c+46SKhNTo(1od1^xPAj@{I zdyoWj6$sm+=v^>*zM9$ObBbJS5FbsRFDu0ZQ?aDcR&MeFH5afM!X6>#k{K8nHZm|U V2*Xq`fP5%FIZs`UZL<<c5CD;nXk7pR delta 976 zcmbR5Kg(Y_z?+#xgn@yBgJDi~WK_hT?@R@Z3=C(O7#Kt*-%}E=?+rTbci2E+kNYY6 zAM82XReS^Uw#Y14q_FisZF2sKt4CJ8@%8#IXWkkT!eQ}a<GqjPDz15NSmxsYM|7@v z@7bFXJ&!Wp32>Osmo3`X!l%2tFe}-rL`U$YpkcP}(w|QGKdaicVrCz^SeWj$xWP&F zU(Sj{b6y^LxbESFOKsI9a|7!uI%RgO|8;4)=W6Ncn~$#fI8T&)o735M4Ub;zyB8X< zc<KJ1dJFDz9DUOM$KEnNjNkIMz}p(Vr*-?qmwjovwbxPGfm0zf=jDOP*`izd_S&4B zTqx3W?$D+NKDK?)Iy^TXeps!1@Rs`de%TX}SFF5${}6oj;SPK9?eBJSA7*mcJ~>%G zqdw{Ss%M{%MTJ~>zIWAUbLYPkjLyv7Ca`MdQ!)NkSqauTE*@T2|FibRUXYPHr~Q~y zcUSO3(XwYQvt!azR|PVQX!f`TOk+@-moj;EX5cFmN!4T@wab_Hiigjg``fo!rCsCo z1I1mNr^R^)d|9a~A?Yp;iV-db1`Y;Lj7;9bsKPuuJ96@EMqTDP*^!gEndHE<4wEXF z4q?&)(~V3fV0s6W7g#+j^I0%`mAM-vzB!p?4ilKc#LmqLW(Ww(;@#{n_lOz9o4i(b z7MRvin#>7L36oDKS;~WW3`l?z&K6*J>$qsLg0ckICTnGB#*>r7l@-C}R4Yr1{bXcd zNG#D0@MdHZVMcgqjk2_*6cbpgq_jLUH4j}y6x;>|1_pjO2V|YoBo&DN6;-5}@|h-2 zV3M62t-_^%?nr$UUCWpz3#c1vLmUE0?X$BZqyEfmbLwJXVEDkmz@P!wz`(Gi@$=+| zD&}BcNvldT9-eHj8VL4Px2iN#Aj@QV0rkn}RVBefuT`a)KCn#|WS5w%pvD6h(pQsa z`o}+6UO;zpr5ev<cR3LrnCVLzXUk3&P<H`4c=x&oNlpw53?OU^Q^5eTzgBUwfV%1A jTWVt9;1~7?IhV}9z_5{lfk7BWq15DJbv3qiN+3Z1h}llA diff --git a/helm/dbrepo/files/create-event-listener.jar b/helm/dbrepo/files/create-event-listener.jar index 61046f026663169b343724b8275c9be7ef2af9ee..7072823dcbcc2d91dab2624b91f1e47fad47dbff 100644 GIT binary patch delta 1119 zcmbQ`Ki^+Cz?+#xgn@yBgJILEsHkI4WHU=A3M<wh%zLaLus8aX{RifTyEpt^M^Bd9 z6}W5arDfj@d(1V=`V!vc{M&aVGd6e2t+$L4Gmh^$E<NwSEGgTM<|X$^wxz7}c$D!{ zfWtI?j@LI9=BTpwSI+UgxZ#tMeq@n(?=$Va&-K|u9^SI)J2!D<FB8|)AFCI#c`ws$ zZ|`&Vw|;k#*RB4cY0;y7lHT#^Yv0A34C_8u9X9s{n`t#m*JAm%3lECv{+<7x>lgdN z6aOduS9@NzS?^}wiwEAC{l^y@Y!$yE&l|<)#o(Eo%|0(?{fhDzPhIErEKVp9oF>X+ z@X<CQ^?+add|A$GcGY$798NB{>T33`-bs4iZnJIwZQrTaC_3@~tk-!ee?$E0r_^*^ zEve6OTc7GXKb~N8X7@g!RoPGF{8zn9uxC|LSt|9P>9}GBAOG{-k1b+%mwsSlFJ8E} zb=Nw@{i~l<PI@|XR=8)EmH(uhxw8)PT$)|k7`agY`?hsIi{8acsaU$)WaGbBn<?4K z;wT^0G_mjtA1E%k7#KJh7??M$ikiHhQH6Qqs;J4=7<IvXHYPbRt<Izhru~_;z;q3h z37Fo@<ONbciTNyuntXw|8zj6rj%5xLnDLj5n-k377MR5gVodH*oV9tW>?39{M_p+$ zCp-;IKCEO37X7azUB8@>fx*``#8KDN&rLtTn~_O`8RE>1tD>S9kbn@JEx_>B@f@<Y z;?$zD%;eN!6#XFU;93|M7?|N4kp6#+3=D}S`T=f8Hlpj`LeU}51lCbfTArDjhi=p4 z`^wUc?vsBjLqbtTMVhf>a=nU-HnNY<&DTdUfA!>g6+3X?9#D~H`oT1rpIJ)>q8*Zl zKmp?On`M<A0|SE&0|SE-Tss59lExFvlkYRTplATu_y1G#Zhs~QhHI=03`Qs#!dNEf zvY23K;QlB0=N1P8!#V*51~C*3U)d(}uuDvqR^tIjo|c+46SKhNTo(1od1^xPAj@{I zdyoWj6$sm+=v^>*zM9$ObBbJS5FbsRFDu0ZQ?aDcR&MeFH5afM!X6>#k{K8nHZm|U V2*Xq`fP5%FIZs`UZL<<c5CD;nXk7pR delta 976 zcmbR5Kg(Y_z?+#xgn@yBgJDi~WK_hT?@R@Z3=C(O7#Kt*-%}E=?+rTbci2E+kNYY6 zAM82XReS^Uw#Y14q_FisZF2sKt4CJ8@%8#IXWkkT!eQ}a<GqjPDz15NSmxsYM|7@v z@7bFXJ&!Wp32>Osmo3`X!l%2tFe}-rL`U$YpkcP}(w|QGKdaicVrCz^SeWj$xWP&F zU(Sj{b6y^LxbESFOKsI9a|7!uI%RgO|8;4)=W6Ncn~$#fI8T&)o735M4Ub;zyB8X< zc<KJ1dJFDz9DUOM$KEnNjNkIMz}p(Vr*-?qmwjovwbxPGfm0zf=jDOP*`izd_S&4B zTqx3W?$D+NKDK?)Iy^TXeps!1@Rs`de%TX}SFF5${}6oj;SPK9?eBJSA7*mcJ~>%G zqdw{Ss%M{%MTJ~>zIWAUbLYPkjLyv7Ca`MdQ!)NkSqauTE*@T2|FibRUXYPHr~Q~y zcUSO3(XwYQvt!azR|PVQX!f`TOk+@-moj;EX5cFmN!4T@wab_Hiigjg``fo!rCsCo z1I1mNr^R^)d|9a~A?Yp;iV-db1`Y;Lj7;9bsKPuuJ96@EMqTDP*^!gEndHE<4wEXF z4q?&)(~V3fV0s6W7g#+j^I0%`mAM-vzB!p?4ilKc#LmqLW(Ww(;@#{n_lOz9o4i(b z7MRvin#>7L36oDKS;~WW3`l?z&K6*J>$qsLg0ckICTnGB#*>r7l@-C}R4Yr1{bXcd zNG#D0@MdHZVMcgqjk2_*6cbpgq_jLUH4j}y6x;>|1_pjO2V|YoBo&DN6;-5}@|h-2 zV3M62t-_^%?nr$UUCWpz3#c1vLmUE0?X$BZqyEfmbLwJXVEDkmz@P!wz`(Gi@$=+| zD&}BcNvldT9-eHj8VL4Px2iN#Aj@QV0rkn}RVBefuT`a)KCn#|WS5w%pvD6h(pQsa z`o}+6UO;zpr5ev<cR3LrnCVLzXUk3&P<H`4c=x&oNlpw53?OU^Q^5eTzgBUwfV%1A jTWVt9;1~7?IhV}9z_5{lfk7BWq15DJbv3qiN+3Z1h}llA diff --git a/helm/dbrepo/templates/auth-configmap.yaml b/helm/dbrepo/templates/auth-configmap.yaml index 13d724d5e0..01f83a092c 100644 --- a/helm/dbrepo/templates/auth-configmap.yaml +++ b/helm/dbrepo/templates/auth-configmap.yaml @@ -3714,7 +3714,7 @@ data: "containerId" : "afe47bd0-61f8-40c3-95cb-04930407ebdd" }, "requiredCredentials" : [ "password" ], - "passwordPolicy" : "length(8) and maxLength(64) and specialChars(1) and lowerCase(1) and upperCase(1) and digits(1) and passwordAge(30)", + "passwordPolicy" : "length(8) and maxLength(64) and specialChars(1) and lowerCase(1) and upperCase(1) and digits(1)", "otpPolicyType" : "totp", "otpPolicyAlgorithm" : "HmacSHA1", "otpPolicyInitialCounter" : 0, -- GitLab