Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Credential Reuse #18

Open
highvolt-dev opened this issue Oct 9, 2021 · 0 comments
Open

Credential Reuse #18

highvolt-dev opened this issue Oct 9, 2021 · 0 comments
Labels
enhancement New feature or request

Comments

@highvolt-dev
Copy link
Owner

highvolt-dev commented Oct 9, 2021

Provide method(s) for credentials to be re-used.

Because web api authentication uses hashing and app api authentication uses cleartext passwords, cannot simply just use hashed value.

Options include storing password in cleartext or encrypted at rest and providing the decryption key at runtime, e.g. with an environment variable. If storing in cleartext, should ensure read permissions are as strict as possible.

@highvolt-dev highvolt-dev added the enhancement New feature or request label Oct 9, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request
Projects
None yet
Development

No branches or pull requests

1 participant