Implement Horizon ENFORCE_PASSWORD_CHECK

Bug #1640806 reported by Luke Hinds
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
puppet-horizon
Fix Released
Undecided
Luke Hinds
tripleo
Fix Released
Medium
Luke Hinds

Bug Description

By setting ENFORCE_PASSWORD_CHECK to `True`, it displays an 'Admin Password' field on the Change Password form to verify that it is indeed the admin logged-in who wants to change the password.

This field should made available for OpenStack operators to toggle according to their security policies.

File: /etc/openstack-dashboard/local_settings

Key / Value entry:

ENFORCE_PASSWORD_CHECK = True

Luke Hinds (lhinds)
description: updated
Changed in tripleo:
status: New → Triaged
Luke Hinds (lhinds)
Changed in tripleo:
assignee: nobody → Luke Hinds (lhinds)
Luke Hinds (lhinds)
Changed in puppet-horizon:
assignee: nobody → Luke Hinds (lhinds)
Luke Hinds (lhinds)
Changed in tripleo:
status: Triaged → In Progress
Changed in puppet-horizon:
status: New → In Progress
Revision history for this message
Luke Hinds (lhinds) wrote :
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Related fix merged to puppet-horizon (master)

Reviewed: https://review.openstack.org/397752
Committed: https://git.openstack.org/cgit/openstack/puppet-horizon/commit/?id=14cc9e89ab29b8c8bfc4e7664ff786a35253eee2
Submitter: Jenkins
Branch: master

commit 14cc9e89ab29b8c8bfc4e7664ff786a35253eee2
Author: Luke Hinds <email address hidden>
Date: Tue Nov 15 13:47:23 2016 +0000

    Manage enforce_password_check

    By setting ENFORCE_PASSWORD_CHECK to `True`, it displays an 'Admin
    Password' field on the Change Password form to verify that it is indeed
    the admin logged-in who wants to change the password.

    Change-Id: If7af97df7a011569a7e14fbab4f880688d7b82c3
    Related-Bug: #1640806

Luke Hinds (lhinds)
Changed in puppet-horizon:
status: In Progress → Fix Committed
Changed in tripleo:
status: In Progress → Fix Committed
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix merged to tripleo-heat-templates (master)

Reviewed: https://review.openstack.org/397755
Committed: https://git.openstack.org/cgit/openstack/tripleo-heat-templates/commit/?id=ca122325ddb9b17c75bc3050ff17ed71fd273e7e
Submitter: Jenkins
Branch: master

commit ca122325ddb9b17c75bc3050ff17ed71fd273e7e
Author: Luke Hinds <email address hidden>
Date: Tue Nov 15 13:51:36 2016 +0000

    Enable enforce_password_check

    By setting ENFORCE_PASSWORD_CHECK to `True`, it displays an 'Admin
    Password' field on the Change Password form to verify that it is indeed
    the admin logged-in who wants to change the password.

    Change-Id: Ib11bef93b6b0c74063052875fa361290bf1e92fd
    Depends-On: If7af97df7a011569a7e14fbab4f880688d7b82c3
    Closes-Bug: #1640806

Changed in tripleo:
status: Fix Committed → Fix Released
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix included in openstack/tripleo-heat-templates 6.0.0.0b2

This issue was fixed in the openstack/tripleo-heat-templates 6.0.0.0b2 development milestone.

Luke Hinds (lhinds)
Changed in puppet-horizon:
status: Fix Committed → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.