cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Showing results for 
Search instead for 
Did you mean: 

Community Tip - You can Bookmark boards, posts or articles that you'd like to access again easily! X

Translate the entire conversation x

Encryption algorithm is used by WindchillDS to store passwords

AC_8227635
4-Participant

Encryption algorithm is used by WindchillDS to store passwords

I am using Windchill PDMLink Release 11.0 and Datecode with CPS M030-CPS22

Windchill DS default password policy預設演算法為Salted SHA-1(ds-cfg-default-password-storage-scheme),若要變更其他加密演算法(如Salted SHA-256),對於系統目前的user會有何影響? 原廠是否支援在有使用者及資料的情況下,中途變更Windchill DS加密演算法?
4 REPLIES 4

Hi @AC_8227635 

 

Thank you for your question! 

 

I’d like to recommend to bring more details and context to your initial inquiry. For example:

  • Can you describe the current configuration of your Windchill DS password policy? Are you currently using the default Salted SHA-1 encryption algorithm?
  • Are you concerned about how changing the encryption algorithm to Salted SHA-256 might affect existing users and their data? If so, what specific impacts are you worried about?

Please add screenshot(s) to better understand what you are trying to do in your process. 

 

Please refer to this guideline to make your questions more likely to receive a quick and useful answer. 

This will increase your chances to receive meaningful help from other Community members. 

 

What is a good question? 

Windchill 

 

Thank you for your participation and please let me know if you need further assistance! 

 

Best regards,


Catalina
PTC Community Moderator
PTC
AC_8227635
4-Participant
(To:Catalina)

Thank you for your reply.

Can you describe the current configuration of your Windchill DS password policy? Are you currently using the default Salted SHA-1 encryption algorithm?
Yes, the current configuration uses the default password policy of Windchill DS, and it is set to use the default Salted SHA-1 encryption algorithm.

Password policy.png

 

Are you concerned that changing the encryption algorithm to Salted SHA-256 might affect existing users and their data? If so, what specific impacts are you worried about?
I’m concerned that it might cause user password verification failures or require users to reset their passwords.

Hi @AC_8227635,

I wanted to see if you got the help you needed.

If so, please feel free to detail in a reply what has helped you and mark it as the Accepted Solution. It will help other members who may have the same question.

Of course, if you have more to share on your issue, please pursue the conversation.

Thanks,


Catalina
PTC Community Moderator
PTC

Translation did not work so ran through Google: The default password policy of Windchill DS uses Salted SHA-1 (ds-cfg-default-password-storage-scheme). If I want to change to another encryption algorithm (such as Salted SHA-256), what will be the impact on the current users of the system? Does the manufacturer support changing the Windchill DS encryption algorithm midway when there are users and data?

 

I would think that this would not matter but certainly worth a test. I found this write up the has a lot of good information: https://backstage.forgerock.com/docs/ds/8/use-cases/change-password-storage.html

OpenDJ is the tool behind WindchillDS.

Announcements

Top Tags