Ensure that password and PII are secured while in transit

Description

To support guidelines such as FedRAMP, GDPR, and data privacy best practices. Folio needs to ensure that anytime a password and PII information are secure while in transit.

The user story needs to ensure that

  • Secure the channel (SSL) between the login screen and Okapi

  • All Okapi requests/responses that include passwords are secure

  • All Okapi requests/responses that include PII are secure

Environment

None

Potential Workaround

None

relates to

Checklist

hide

TestRail: Results

Activity

Show:

Jakub SkoczenAugust 20, 2018 at 2:05 PM

can you elaborate on those two things:

All Okapi requests/responses that include passwords are secure
All Okapi requests/responses that include PII are secure

Kurt NordstromJuly 19, 2018 at 12:45 PM

If we need to add an SSL layer to Okapi, I think that's going to need to happen at the Core team level.

Cate BoeremaJuly 19, 2018 at 12:41 PM

is this reserved for EPAM or should the Core team pick it up?

Duplicate

Details

Assignee

Reporter

Priority

TestRail: Cases

Open TestRail: Cases

TestRail: Runs

Open TestRail: Runs

Created July 18, 2018 at 8:11 PM
Updated October 16, 2020 at 7:24 PM
Resolved October 16, 2020 at 7:24 PM
TestRail: Cases
TestRail: Runs