aws-samples / pcluster-manager

Manage AWS ParallelCluster through an easy to use web interface
https://pcluster.cloud
Apache License 2.0
65 stars 27 forks source link

Use pbkdf2_hmac in fingerprint generation #492

Closed mtfranchetto closed 1 year ago

mtfranchetto commented 1 year ago

Description

Replace a custom made hash function with pbkdf2_hmac to generate the fingerprint used in the CSRF token generation.

How Has This Been Tested?

Tested a local version of the frontend with auth enabled, and verified that mutations work seamlessly.

PR Quality Checklist

In order to increase the likelihood of your contribution being accepted, please make sure you have read both the Contributing Guidelines and the Project Guidelines

By submitting this pull request, I confirm that you can use, modify, copy, and redistribute this contribution, under the terms of your choice.