Uploaded image for project: 'EJBCA'
  1. EJBCA
  2. ECA-3917

Warn user when trying to creating multiple representations of the same P11 slot

    Details

    • Type: Improvement
    • Status: Closed
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: EJBCA 6.2.4
    • Fix Version/s: EJBCA 6.15.1
    • Component/s: PKI core
    • Labels:
      None
    • Issue discovered during:
      Testing
    • Sprint:
      EJBCA Team Bob - 2018 w45

      Description

      In the CryptoToken view it is possible to create multiple representations of the same PKCS#11 slot. Doing so makes no sense, since access to one's content would grant access to the others'. (It is however sometimes convenient for testing, so we can't prevent it entirely.)

      The simplistic approach would be to warn when multiple creations of library+slot-identifier, but since the same slot could be referenced by id, index and label we should consult the list of mappings used to display slot labels.

      Care must be taken to prevent failure on HSM that don't support label-matching.

        Attachments

        1. eca-3917-trunk.patch
          40 kB
          Tomas Gustavsson
        2. eca-3917-trunk-2.patch
          13 kB
          Tomas Gustavsson

          Issue Links

            Activity

              People

              Assignee:
              tomas Tomas Gustavsson
              Reporter:
              johan Johan Eklund
              Verified by:
              Mike Agrenius Kushner
              Votes:
              1 Vote for this issue
              Watchers:
              9 Start watching this issue

                Dates

                Created:
                Updated:
                Resolved:

                  Time Tracking

                  Estimated:
                  Original Estimate - 1 day Original Estimate - 1 day
                  1d
                  Remaining:
                  Remaining Estimate - 0 minutes
                  0m
                  Logged:
                  Time Spent - 1 day, 30 minutes
                  1d 30m