Skip to main content

Implementation of a mechanism to share secrets

Project description

Beta License: AGPL-3 OCA/server-auth Translate me on Weblate Try me on Runboat

This module implements possibilities to share specific secrets with external users. This bases on the vault implementation and the generated RSA key pair.

Share

This allows an user to share a secret with external users. A share can be generated from a vault entry or directly created by an user. The secret is symmetrically encrypted by a key derived from a pin. To grant access the user has to transmit the link and pin with the external. If either the access counter reaches 0 or the share expires it will be deleted automatically. Due to the usage of a numeric pin and the browser side decryption a share is vulnerable to brute-force attacks and shouldn’t be used as a permanent storage for secrets. For long time uses the user should create an account and a vault should be used.

Table of contents

Known issues / Roadmap

  • Secure the download of the encrypted file behind a challenge/response

Bug Tracker

Bugs are tracked on GitHub Issues. In case of trouble, please check there if your issue has already been reported. If you spotted it first, help us to smash it by providing a detailed and welcomed feedback.

Do not contact contributors directly about support or help with technical issues.

Credits

Authors

  • initOS GmbH

Contributors

Maintainers

This module is maintained by the OCA.

Odoo Community Association

OCA, or the Odoo Community Association, is a nonprofit organization whose mission is to support the collaborative development of Odoo features and promote its widespread use.

This module is part of the OCA/server-auth project on GitHub.

You are welcome to contribute. To learn how please visit https://odoo-community.org/page/Contribute.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distributions

No source distribution files available for this release.See tutorial on generating distribution archives.

Built Distribution

File details

Details for the file odoo_addon_vault_share-16.0.1.0.1-py3-none-any.whl.

File metadata

File hashes

Hashes for odoo_addon_vault_share-16.0.1.0.1-py3-none-any.whl
Algorithm Hash digest
SHA256 477cbc5828e9c87d349f82413a88d38daa5baf996fb41fc270663c2bc096f54f
MD5 1153253fb26f78df9c0b59a817242744
BLAKE2b-256 e3462f9590f9ab0a762f2eccbe8c28cee0069b804c380fbf6057deb5e93cbc0b

See more details on using hashes here.

Supported by

AWS AWS Cloud computing and Security Sponsor Datadog Datadog Monitoring Fastly Fastly CDN Google Google Download Analytics Microsoft Microsoft PSF Sponsor Pingdom Pingdom Monitoring Sentry Sentry Error logging StatusPage StatusPage Status page