Branch: refs/heads/master
Home: https://github.com/tribe29/checkmk
Commit: cc270bb864a4889222ffe10aaccc0f8563233fb3
https://github.com/tribe29/checkmk/commit/cc270bb864a4889222ffe10aaccc0f856…
Author: Timotheus Bachinger <timotheus.bachinger(a)tribe29.com>
Date: 2022-07-21 (Thu, 21 Jul 2022)
Changed paths:
M buildscripts/scripts/build-build-images.groovy
Log Message:
-----------
No need for Pipfile anymore to build build image
... the python version is centralized in defines.make
Change-Id: Ib5e32c0c585a15d807633deae071d1973c644a3e
Branch: refs/heads/master
Home: https://github.com/tribe29/checkmk
Commit: 6f45cb38b36f2d6e6e7ba5a5b44b8a39aac38741
https://github.com/tribe29/checkmk/commit/6f45cb38b36f2d6e6e7ba5a5b44b8a39a…
Author: timotheus.bachinger <timotheus.bachinger(a)tribe29.com>
Date: 2022-07-21 (Thu, 21 Jul 2022)
Changed paths:
M Pipfile
M Pipfile.lock
Log Message:
-----------
Temporary fix version of rsa
... in order to fix builds
Currently, we have the issue that we cannot get the tar.gz of
rsa in version 4.9 onto our devpi mirror.
Change-Id: I4a7472e6c0b771e3db8d3c281c3ff862d1c1f9cf
Branch: refs/heads/2.1.0
Home: https://github.com/tribe29/checkmk
Commit: 29c3fefe413fb83515754de2030853dce086d409
https://github.com/tribe29/checkmk/commit/29c3fefe413fb83515754de2030853dce…
Author: Hannes Rantzsch <hannes.rantzsch(a)tribe29.com>
Date: 2022-07-21 (Thu, 21 Jul 2022)
Changed paths:
A .werks/14380
M cmk/gui/valuespec.py
M tests/unit/cmk/gui/test_valuespec.py
Log Message:
-----------
14380 SEC Improve security of password hashes in audit log
Hashes of passwords displayed in the audit log are now calculated using a keyed hash function.
Previously, a truncated SHA256 hash of the password was displayed. While this is not an issue for long, randomly generated passwords, the hashes of weak passwords could have been reversed using brute-force.
Passwords are now hashed using HMAC with a random key that is not persisted. Note that, as a consequence, users will not be able to recognize or validate password hashes in the audit log.
CMK-10745
Change-Id: Iee3cfbdfe8e529d37bee7d54faea6f35648118c5