Uploaded image for project: 'OFBiz'
  1. OFBiz
  2. OFBIZ-5745

Forgot password functionality is not honoring the 'password.lowercase' property of 'security.properties'

    Details

    • Type: Bug
    • Status: Closed
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: Release Branch 11.04, Release Branch 12.04, Release Branch 13.07, Trunk
    • Fix Version/s: 14.12.01, 12.04.06, 11.04.07, 13.07.01
    • Component/s: ecommerce
    • Labels:
      None

      Description

      Forgot password functionality (LoginEvents.emailPassword) is not honoring the 'password.lowercase' property of 'security.properties'. And thus customer is not able to Login on e-commerce site with new generated password.

      Test Case:
      1. Set property 'password.lowercase' as true in 'security.properties'.
      2. Request a forgot password and customer get the new password as 'a0e7J'
      3. Customer is not able to login on e-commerce site.

      1. patch-5745.patch
        1 kB
        Ritu Raj Lakhera

        Activity

        Hide
        rrlakhera Ritu Raj Lakhera added a comment -

        Attaching the patch for this.

        Show
        rrlakhera Ritu Raj Lakhera added a comment - Attaching the patch for this.
        Hide
        jacques.le.roux Jacques Le Roux added a comment -

        Thanks Ritu Raj,

        Your patch is in
        trunk r1622050
        R13.07 r1622051
        R12.04 r1622055
        R11.04 r1622058

        Show
        jacques.le.roux Jacques Le Roux added a comment - Thanks Ritu Raj, Your patch is in trunk r1622050 R13.07 r1622051 R12.04 r1622055 R11.04 r1622058
        Hide
        jacques.le.roux Jacques Le Roux added a comment -

        Mmm, just thought about that. When a tag has been set and a vote is in progress, except if the vote fails, we should already create new version for future releases (not sure for R11, since R11.04.06 should be the last one, but still). I will do and change here.

        Show
        jacques.le.roux Jacques Le Roux added a comment - Mmm, just thought about that. When a tag has been set and a vote is in progress, except if the vote fails, we should already create new version for future releases (not sure for R11, since R11.04.06 should be the last one, but still). I will do and change here.
        Hide
        jacques.le.roux Jacques Le Roux added a comment -

        Maybe this fix will miss in R11 releases (ie no R11.04.07 will be released), all good things come to an end...

        Show
        jacques.le.roux Jacques Le Roux added a comment - Maybe this fix will miss in R11 releases (ie no R11.04.07 will be released), all good things come to an end...

          People

          • Assignee:
            jacques.le.roux Jacques Le Roux
            Reporter:
            rrlakhera Ritu Raj Lakhera
          • Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

            • Created:
              Updated:
              Resolved:

              Development