bhavinkpatel / jumpcloud_qa_assignment

0 stars 0 forks source link

Application should be using SHA512 for the hashing algorithm #6

Open bhavinkpatel opened 3 years ago

bhavinkpatel commented 3 years ago

Test Data / Request / Prerequisite

Test Steps

  1. Start application (/broken-hashserve_darwin)
  2. Enter Request from above
  3. Verify the hashing algorithm is SHA512

Expected Result

bhavinkpatel commented 3 years ago

Based on the information provided, there is no definite way to determine the hashing algorithm the application is using. The test case is not testable by itself - it is depended also on another test case for retrieving the hashed password. One can reverse compute to ensure hashing is being done correctly. Another option is to test this by pairing with a developer to gain insight into the code behind the feature. Either by including access to the database to directly retrieve a hashed password to verify, or by asking to add testing flags in commands to retrieve such data.