cds-snc / notification-planning-core

Project planning for GC Notify Core Team
0 stars 0 forks source link

Rotate DANGEROUS_SALT in staging #114

Closed sastels closed 3 weeks ago

sastels commented 1 year ago

Description

As a Notify dev, I need to be able to test our DANGEROUS_SALT rotations

WHY are we building?

Want to precisely document the steps for rotating DANGEROUS_SALT and ensure that it's fully tested

WHAT are we building?

Steps for rotating the DANGEROUS_SALT and testing along the way

VALUE created by our solution

We can confidently rotate in production

Acceptance Criteria

QA Steps

Apply the plan for rotation as described in the document and perform the following steps for testing.

sastels commented 1 year ago

Added a script to expire passwords to the attic

Instructions for rotating DANGEROUS_SALT modified.

sastels commented 1 year ago

PR to rotate staging DANGEROUS_SALT https://github.com/cds-snc/notification-manifests/pull/1728

jimleroyer commented 1 year ago

Still in progress, testing the salt change in staging today.

sastels commented 1 year ago

rotated in staging, passwords were expired, all worked as expected.