summaryrefslogtreecommitdiffstats
path: root/cmso-ticketmgt/src
diff options
context:
space:
mode:
authormalarvizhi <malarvizhi.44@wipro.com>2021-03-18 00:40:11 -0700
committerkrishna moorthy <krishna.moorthy6@wipro.com>2021-03-18 08:25:55 +0000
commitee02cbcfb07c7322b93399c80e50acd2b975ccbd (patch)
tree0f064bc04583c6a2f582897da4ce709e907c8b6f /cmso-ticketmgt/src
parentfa9a888eb79c4632b3a1afd97641b0554d086828 (diff)
Fix weak cryptography issues
Issue-ID: OPTFRA-927 Signed-off-by: Malarvizhi Paramasivam <malarvizhi.44@wipro.com> Change-Id: I9e48f7313a7f76bd431e17cebfc3c52bc7f91bda
Diffstat (limited to 'cmso-ticketmgt/src')
-rw-r--r--cmso-ticketmgt/src/main/java/org/onap/optf/cmso/common/PropertiesManagement.java11
-rw-r--r--cmso-ticketmgt/src/main/resources/META-INF/resources/swagger/swagger.json2
2 files changed, 6 insertions, 7 deletions
diff --git a/cmso-ticketmgt/src/main/java/org/onap/optf/cmso/common/PropertiesManagement.java b/cmso-ticketmgt/src/main/java/org/onap/optf/cmso/common/PropertiesManagement.java
index c36a587..e34a73d 100644
--- a/cmso-ticketmgt/src/main/java/org/onap/optf/cmso/common/PropertiesManagement.java
+++ b/cmso-ticketmgt/src/main/java/org/onap/optf/cmso/common/PropertiesManagement.java
@@ -100,9 +100,9 @@ public class PropertiesManagement {
private static final String encrypt(String key, String value) {
try {
- byte[] bytesIV = new byte[16];
- random.nextBytes(bytesIV);
- IvParameterSpec iv = new IvParameterSpec(bytesIV);
+ byte[] bytesIV = new byte[12];
+ random.nextBytes(bytesIV);
+ IvParameterSpec iv = new IvParameterSpec(bytesIV);
SecretKeySpec skeySpec = new SecretKeySpec(key.getBytes("UTF-8"), "AES");
Cipher cipher = Cipher.getInstance(transformation);
cipher.init(Cipher.ENCRYPT_MODE, skeySpec, iv);
@@ -118,9 +118,8 @@ public class PropertiesManagement {
private static final String decrypt(String key, String encrypted) {
try {
-
- byte[] bytesIV = new byte[16];
- random.nextBytes(bytesIV);
+ byte[] bytesIV = new byte[12];
+ random.nextBytes(bytesIV);
IvParameterSpec iv = new IvParameterSpec(bytesIV);
SecretKeySpec skeySpec = new SecretKeySpec(key.getBytes("UTF-8"), "AES");
Cipher cipher = Cipher.getInstance(transformation);
diff --git a/cmso-ticketmgt/src/main/resources/META-INF/resources/swagger/swagger.json b/cmso-ticketmgt/src/main/resources/META-INF/resources/swagger/swagger.json
index 3cac0bb..0f077e0 100644
--- a/cmso-ticketmgt/src/main/resources/META-INF/resources/swagger/swagger.json
+++ b/cmso-ticketmgt/src/main/resources/META-INF/resources/swagger/swagger.json
@@ -1,7 +1,7 @@
{
"swagger" : "2.0",
"info" : {
- "version" : "2.3.1-SNAPSHOT",
+ "version" : "2.3.2-SNAPSHOT",
"title" : "cmso-ticketmgt"
},
"basePath" : "/ticketmgt",