diff options
| author | Adam Young <ayoung@redhat.com> | 2014-08-15 16:37:32 -0400 |
|---|---|---|
| committer | Adam Young <ayoung@redhat.com> | 2014-08-21 15:14:30 -0400 |
| commit | eb54dfa3f7ef89502e723d4ade41d8930ffb48d5 (patch) | |
| tree | 3603e6bda55c99df21f18a809038b6b9b108ac53 /keystoneclient/middleware | |
| parent | 8adce9619c6dd736b3c51033d6b4f49b0bf125fb (diff) | |
| download | python-keystoneclient-eb54dfa3f7ef89502e723d4ade41d8930ffb48d5.tar.gz | |
Hash for PKIZ
Only PKI (asn1) based tokens were checked for format and hashed
Closes-Bug: 1355125
SecurityImpact
Change-Id: Iefedde7f168e2ff1870905041fa95301934452e5
Diffstat (limited to 'keystoneclient/middleware')
| -rw-r--r-- | keystoneclient/middleware/auth_token.py | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/keystoneclient/middleware/auth_token.py b/keystoneclient/middleware/auth_token.py index d2eb29b..cf33f04 100644 --- a/keystoneclient/middleware/auth_token.py +++ b/keystoneclient/middleware/auth_token.py @@ -1407,7 +1407,7 @@ class TokenCache(object): """ - if cms.is_asn1_token(user_token): + if cms.is_asn1_token(user_token) or cms.is_pkiz(user_token): # user_token is a PKI token that's not hashed. token_hashes = list(cms.cms_hash_token(user_token, mode=algo) |
