Fix security issue in SecurityUtil 23/108923/3
authorNeil Derraugh <neil.derraugh@yoppworks.com>
Mon, 8 Jun 2020 14:40:10 +0000 (10:40 -0400)
committerOfir Sonsino <ofir.sonsino@intl.att.com>
Wed, 10 Jun 2020 08:23:27 +0000 (08:23 +0000)
commit6cfebc0867b2f21a401f55734aba30eb245e3c70
treefcbed2057758d87703104cccaacb302f082d9f19
parent8a0f58a005175959f5b56c0840ee9980f0d68c01
Fix security issue in SecurityUtil

- Specified mode and padding to address risky algorithm
- Corrected unit test for different exception message
- Moved tests to package

Issue-ID: SDC-3105
Signed-off-by: Neil Derraugh <neil.derraugh@yoppworks.com>
Change-Id: I5773ab555a5468362c775cf99795df4eb8c52136
openecomp-be/backend/openecomp-sdc-security-util/src/main/java/org/openecomp/sdc/securityutil/CipherUtil.java
openecomp-be/backend/openecomp-sdc-security-util/src/test/java/org/openecomp/sdc/securityutil/AuthenticationCookieUtilsTest.java [moved from openecomp-be/backend/openecomp-sdc-security-util/src/test/java/AuthenticationCookieUtilsTest.java with 98% similarity]
openecomp-be/backend/openecomp-sdc-security-util/src/test/java/org/openecomp/sdc/securityutil/CipherUtilTest.java [moved from openecomp-be/backend/openecomp-sdc-security-util/src/test/java/CipherUtilTest.java with 93% similarity]
openecomp-be/backend/openecomp-sdc-security-util/src/test/java/org/openecomp/sdc/securityutil/PasswordsTest.java [moved from openecomp-be/backend/openecomp-sdc-security-util/src/test/java/PasswordsTest.java with 99% similarity]
openecomp-be/backend/openecomp-sdc-security-util/src/test/java/org/openecomp/sdc/securityutil/RepresentationUtilsTest.java [moved from openecomp-be/backend/openecomp-sdc-security-util/src/test/java/RepresentationUtilsTest.java with 98% similarity]
openecomp-be/backend/openecomp-sdc-security-util/src/test/java/org/openecomp/sdc/securityutil/filters/SessionValidationFilterTest.java [moved from openecomp-be/backend/openecomp-sdc-security-util/src/test/java/SessionValidationFilterTest.java with 99% similarity]