[JIRA] (JENKINS-32776) Jenkins shouldn't store API tokens in a recoverable format
Title: Message Title Wadeck Follonier commented on JENKINS-32776 Re: Jenkins shouldn't store API tokens in a recoverable format New API Token system proposed. User will have the capability to have multiple API Token (with a name) that are working like in GitHub, meaning they can see the token only after the creation. Only the SHA-256 hashes are stored in the server for the verification but the token cannot be displayed anymore. In order to keep the current (legacy) behavior, the users with a legacy token can still display its value. If the corresponding API Token Property Configuration option is enabled, they can create new legacy token even if they do not have one anymore (to ease migration) but once disabled and the users have no legacy token, there is no option to create new ones. See the attached PR to have more details. Add Comment This message was sent by Atlassian JIRA (v7.3.0#73011-sha1:3c73d0e) -- You received this message because you are subscribed to the Google Groups "Jenkins Issues" group. To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com. For more options, visit https://groups.google.com/d/optout.
[JIRA] (JENKINS-32776) Jenkins shouldn't store API tokens in a recoverable format
Title: Message Title Wadeck Follonier started work on JENKINS-32776 Change By: Wadeck Follonier Status: Open In Progress Add Comment This message was sent by Atlassian JIRA (v7.3.0#73011-sha1:3c73d0e) -- You received this message because you are subscribed to the Google Groups "Jenkins Issues" group. To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com. For more options, visit https://groups.google.com/d/optout.
[JIRA] (JENKINS-32776) Jenkins shouldn't store API tokens in a recoverable format
Title: Message Title rsandell assigned an issue to rsandell Jenkins / JENKINS-32776 Jenkins shouldn't store API tokens in a recoverable format Change By: rsandell Assignee: rsandell Add Comment This message was sent by Atlassian JIRA (v7.1.7#71011-sha1:2526d7c) -- You received this message because you are subscribed to the Google Groups "Jenkins Issues" group. To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com. For more options, visit https://groups.google.com/d/optout.