Details

    • Story
    • Status: Resolved
    • Major
    • Resolution: Done
    • None
    • 1.7.10
    • None

    Description

      *** Part of the security enhancements update ***

      The security enhancements are a group of new features that can be further sorted into two categories of improvements:

      Auditing improvements
          CORE-285 Log number of attempted logins
          CORE-286 Log admin functions

      Password Management improvements
          CORE-287 Lockout after failed logins
          CORE-288 Enforce complex passwords
          CORE-289 Mandatory password change
          CORE-300 Prevent repeat password

      Each of the above features is listed as a sub-task of this story.

      Attachments

        Activity

          mem61 Mike Mendis created issue -
          mem61 Mike Mendis made changes -
          Field Original Value New Value
          Issue Type Bug [ 1 ] Improvement [ 4 ]
          jmd86 Janice Donahoe made changes -
          Fix Version/s 1.7.10 [ 10307 ]
          jmd86 Janice Donahoe made changes -
          Assignee Janice Donahoe [ jmd86 ]
          jmd86 Janice Donahoe made changes -
          Issue Type Improvement [ 4 ] Story [ 10001 ]
          jmd86 Janice Donahoe made changes -
          Summary Security enhancement Security enhancements
          jmd86 Janice Donahoe made changes -
          Status New [ 10000 ] Open [ 1 ]
          jmd86 Janice Donahoe made changes -
          Status Open [ 1 ] In Progress [ 3 ]
          jmd86 Janice Donahoe made changes -
          Status In Progress [ 3 ] Ready to Test [ 10001 ]
          jmd86 Janice Donahoe made changes -
          Status Ready to Test [ 10001 ] Testing [ 10002 ]
          jmd86 Janice Donahoe made changes -
          Sprint Release 1.7.08b 2 [ 21 ]
          jmd86 Janice Donahoe made changes -
          Rank Ranked higher
          jmd86 Janice Donahoe made changes -
          Sprint
          jmd86 Janice Donahoe made changes -
          Sprint Release 1.7.08b 3 [ 22 ]
          jmd86 Janice Donahoe made changes -
          Rank Ranked higher
          jmd86 Janice Donahoe made changes -
          Sprint
          jmd86 Janice Donahoe made changes -
          Rank Ranked higher
          jmd86 Janice Donahoe made changes -
          Sprint v1710.0001 [ 23 ]
          jmd86 Janice Donahoe made changes -
          Description Log of (password) login attempts
          Password only but can configure to to get sessions, take note of agg service account
          Log of admin functions attempted
          Lockout with specific # of failed (password) login attempts
          Does this exist already?
          Enforce complex passwords
          8 characters or more, one capital, one lower case, a number, a special char only when a user changes the password, if a admin creates the password the user will be forced to change it the first time they logon
          Enforce change of password regularly

          The password policy can be by adding a global param PM_EXPIRED_PASSWORD and setting to true
          *** Part of the security enhancements update ***

          The security enhancements are a group of new features that can be further sorted into two categories of improvements:

          Auditing improvements
              CORE-285 Log number of attempted logins
              CORE-286 Log admin functions

          Password Management improvements
              CORE-287 Lockout after failed logins
              CORE-288 Enforce complex passwords
              CORE-289 Mandatory password change
              CORE-300 Prevent repeat password

          Each of the above features is listed as a sub-task of this story.
          Tested and verified all the security features are working as designed. All of them will be included in the 1.7.10 release.
          jmd86 Janice Donahoe added a comment - Tested and verified all the security features are working as designed. All of them will be included in the 1.7.10 release.
          jmd86 Janice Donahoe made changes -
          Resolution Done [ 10001 ]
          Status Testing [ 10002 ] Resolved [ 5 ]
          jmd86 Janice Donahoe made changes -
          Labels wikirelease

          People

            jmd86 Janice Donahoe
            mem61 Mike Mendis
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: