You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
I would like to know if BPN validation can be bypassed if Catena-X portal does not check Connector URLs of onboarded connectors (need to admit, not being too deep into BPN details yet). Thus, how this risk is mitigated currently?
Potential vector
You will need a BPN of a connector, which you want to mimic referred to "BPN_OF_INTEREST".
Create a connector for URL https://{{BPN_OF_INTEREST}}.yourdomain.com/[...]/OWN_BPN
Register connector in CX portal
Try to negotiate a contract with a data offering which has BPN validation active
Expected behavior
Not being able to negotiate a contract
Possible Implementation to mitigate risk
use endswith instead of contains
The text was updated successfully, but these errors were encountered:
Describe the bug
I would like to know if BPN validation can be bypassed if Catena-X portal does not check Connector URLs of onboarded connectors (need to admit, not being too deep into BPN details yet). Thus, how this risk is mitigated currently?
Potential vector
Expected behavior
Not being able to negotiate a contract
Possible Implementation to mitigate risk
use
endswith
instead ofcontains
The text was updated successfully, but these errors were encountered: