Project

Profile

Help

Task #7853

closed

Task #7960: FIPS and support for ALLOWED_CONTENT_CHECKSUMS

FIPS: downloader needs to notice if expected-digest-algorithm is FORBIDDEN

Added by ggainey about 4 years ago. Updated over 3 years ago.

Status:
CLOSED - WONTFIX
Priority:
Normal
Assignee:
Category:
-
Sprint/Milestone:
Start date:
Due date:
% Done:

0%

Estimated time:
Platform Release:
Groomed:
No
Sprint Candidate:
No
Tags:
Sprint:
Quarter:

Description

See https://github.com/pulp/pulpcore/blob/master/pulpcore/app/models/repository.py#L302

If a RemoteArtifact has a digest-algorithm specified that is NOT in Artifact.DIGEST_FIELDS, current behavior is to ignore it and just build the rest of the digests. We need instead to notice an empty expected_digests, check for specified-algorithms in Artifact.FORBIDDEN_DIGESTS, and raise an exception when that happens.

See https://hackmd.io/d5y1IaW_QaSJ-DsosMDkjg?view for more discussion.

Actions #1

Updated by fao89 almost 4 years ago

  • Tracker changed from Issue to Task
  • % Done set to 0
  • Severity deleted (2. Medium)
  • Triaged deleted (No)
Actions #2

Updated by ppicka almost 4 years ago

  • Status changed from NEW to ASSIGNED
  • Assignee set to ppicka
Actions #3

Updated by daviddavis almost 4 years ago

  • Parent issue set to #7960
Actions #4

Updated by pulpbot almost 4 years ago

  • Status changed from ASSIGNED to POST

edit: accidentally tagged wrong issue

Actions #5

Updated by dalley almost 4 years ago

  • Status changed from POST to ASSIGNED
Actions #6

Updated by daviddavis over 3 years ago

  • Sprint/Milestone set to 3.11.0
Actions #7

Updated by daviddavis over 3 years ago

  • Assignee changed from ppicka to daviddavis
Actions #8

Updated by daviddavis over 3 years ago

  • Sprint/Milestone changed from 3.11.0 to 3.12.0
Actions #9

Updated by daviddavis over 3 years ago

  • Status changed from ASSIGNED to NEW
  • Assignee deleted (daviddavis)
Actions #10

Updated by daviddavis over 3 years ago

  • Status changed from NEW to ASSIGNED
  • Assignee set to daviddavis
Actions #11

Updated by pulpbot over 3 years ago

  • Status changed from ASSIGNED to POST
Actions #12

Updated by daviddavis over 3 years ago

Closing in favor of #8435

Actions #13

Updated by daviddavis over 3 years ago

  • Status changed from POST to CLOSED - WONTFIX

Also available in: Atom PDF