The extractArgon2ParametersFromEncodedPassword assumes argon2 based hashes and hence fails with an "Index out of bound" exception if the hash does not include a $ sign. The introduced test checks this assumption to short cut testing the policy. If the stored hash is not an argon2-hash than the policy is violated and a rehash is required.
The
extractArgon2ParametersFromEncodedPassword
assumesargon2
based hashes and hence fails with an "Index out of bound" exception if the hash does not include a$
sign. The introduced test checks this assumption to short cut testing the policy. If the stored hash is not anargon2
-hash than the policy is violated and a rehash is required.see #3