[Koha-bugs] [Bug 28786] Two-factor authentication for staff client - TOTP

bugzilla-daemon at bugs.koha-community.org bugzilla-daemon at bugs.koha-community.org
Fri Sep 10 12:46:39 CEST 2021


https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=28786

--- Comment #29 from Martin Renvoize <martin.renvoize at ptfs-europe.com> ---
Not all encryption is one way ;). I was suggesting for these fields we use
encrypt/decrypt where we have the key stored outside of the database, but on
the server.  That way, we can decrypt the secret as needed on the server to
validate the top. But the key secret itself can't easily be leaked via reports.

-- 
You are receiving this mail because:
You are watching all bug changes.


More information about the Koha-bugs mailing list