Optimize the password encryption and password change logic for the admin user
See original GitHub issueTask
Currently, We use the AES algorithm to encrypt the password and provide the password back to the front end. I think It’s not safe.

I suggest the following optimization:
- The API does not return the password field. See
org.apache.shenyu.admin.controller.DashboardUserController#detailDashboardUser - Consider Using sha512 algorithm to encrypt the password (Need to discuss)
Please read the Contribution Guideline before submitting the PR
Issue Analytics
- State:
- Created 2 years ago
- Comments:13 (13 by maintainers)
Top Results From Across the Web
Optimize the password encryption and password change logic for ...
Task Currently, We use the AES algorithm to encrypt the password and provide the password back to the front end. I think It's...
Read more >How Do Password Encryption Methods Work? - Okta
Password encryption is one of the most popular data security methodologies. Discover password encryption types and how a password algorithm works.
Read more >Optimize security by enhancing password encryption - IBM
11, the encryption of administrator, node, server, database backup, and Lightweight Directory Access Protocol (LDAP) authentication passwords is enhanced.
Read more >How to securely store passwords in database - Vaadata
We can merge the three methods (salt, pepper and number of iterations) to have one method to store passwords more securely than a...
Read more >EPM Automate Encrypt, How to encrypt EPM Cloud password
Encrypting the secrets allows Service Administrators to share their encrypted password file with developers who write EPM Automate scripts so that they can ......
Read more >
Top Related Medium Post
No results found
Top Related StackOverflow Question
No results found
Troubleshoot Live Code
Lightrun enables developers to add logs, metrics and snapshots to live code - no restarts or redeploys required.
Start Free
Top Related Reddit Thread
No results found
Top Related Hackernoon Post
No results found
Top Related Tweet
No results found
Top Related Dev.to Post
No results found
Top Related Hashnode Post
No results found

After testing, the problem is that the apache protocol is not added.
After adding, the above errors will appear. But maven builds successfully
The new class is lack of apache protocol.