Project

General

Profile

Actions

action #71740

closed

[sle][security][sle15sp3] New Test: ensure password hash is SHA512

Added by dimstar over 3 years ago. Updated over 3 years ago.

Status:
Resolved
Priority:
High
Assignee:
Category:
New test
Target version:
SUSE QA - SLE 15 SP3
Start date:
2020-09-23
Due date:
% Done:

100%

Estimated time:
40.00 h
Difficulty:

Description

After seeing several times that this manages to degrade, we need an urgent test to catch this already in stagings, not only when a product is published.

Triggered by bug https://bugzilla.opensuse.org/show_bug.cgi?id=1176714

I propose two new tests, to be run on the staging workflows and full product test:

  • Create a new user using yast2 users (explicitly check the 'encryption' dialog, ensure SHA512 is preselected); ensure the created user has a SHA512 hashed password in /etc/shadow (starts with $6$)
  • Create a user on CLI by means of adduser, change the password using passwd, check it is SHA512 hashed (starts with $6$)
Actions

Also available in: Atom PDF