Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[web] Validate against Banned-Passwords List #9726

Closed
exalate-issue-sync bot opened this issue Sep 23, 2023 · 0 comments · Fixed by #9727
Closed

[web] Validate against Banned-Passwords List #9726

exalate-issue-sync bot opened this issue Sep 23, 2023 · 0 comments · Fixed by #9727

Comments

@exalate-issue-sync
Copy link

Description

User Stories

  • As an organization who needs to comply with LSI requirements, I need to validate user passwords against a Banned-Password-List.

Value

  • Compliance

Acceptance Criteria

  • Add an option to enable a password check against a Banned-Password-List
  • if a user tries to set a password that is listed in the banned Banned-Password-List, the password can not be used (is invalid)
  • Add valdation message "Unfortunately, your password is commonly used. Please pick a harder-to-guess password for your safety."

Definition of ready

[ ] everybody needs to understand the value written in the user story
[ ] acceptance criteria has to be defined
[ ] all dependencies of the user story need to be identified
[ ] feature should be seen from an end user perspective
[ ] user story has to be estimated
[ ] story points need to be less then 20

Definition of done

  • Functional requirements
    [ ] functionality described in the user story works
    [ ] acceptance criteria are fulfilled
  • Quality
    [ ] code review happened
    [ ] CI is green
    [ ] critical code received unit tests by the developer
    [ ] automated tests passed (if automated tests are not available, this test needs to be created and passed
  • Non-functional requirements
    [ ] no sonar cloud issues
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging a pull request may close this issue.

0 participants