Skip to main content

Password vault integration in Odoo

Project description

Beta License: AGPL-3 OCA/server-auth Translate me on Weblate Try me on Runbot

This module implements a vault for secrets and files using end-to-end-encryption. The encryption and decryption happens in the browser using a vault specific shared master key. The master keys are encrypted using asymmetrically. For this the user has to enter a second password on the first login or if he needs to access data in a vault. The asymmetric keys are stored for a certain time in the browser storage.

The server can never access the secrets with the information available. Only people registered in the vault can decrypt or encrypt values in a vault. The meta data isn’t encrypted to be able to search/filter for entries more easily.

This modules requires a secure context for the browser to work properly.

Table of contents

Known issues / Roadmap

  • Field and file history for restoration

  • Send secrets directly to an inbox within Odoo

  • Import improvement

  • Support challenge-response/FIDO2

  • Support for argon2 and kdbx v4

  • When changing an entry from one vault to another existing vault, the values added on this entry cannot be accessed, so the field vault is going to be readonly when it is defined.

    If you want to move entries between vaults you can use the export -> import option.

Bug Tracker

Bugs are tracked on GitHub Issues. In case of trouble, please check there if your issue has already been reported. If you spotted it first, help us smashing it by providing a detailed and welcomed feedback.

Do not contact contributors directly about support or help with technical issues.

Credits

Authors

  • initOS GmbH

Contributors

Maintainers

This module is maintained by the OCA.

Odoo Community Association

OCA, or the Odoo Community Association, is a nonprofit organization whose mission is to support the collaborative development of Odoo features and promote its widespread use.

This module is part of the OCA/server-auth project on GitHub.

You are welcome to contribute. To learn how please visit https://odoo-community.org/page/Contribute.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distributions

No source distribution files available for this release.See tutorial on generating distribution archives.

Built Distribution

odoo13_addon_vault-13.0.1.4.0-py3-none-any.whl (131.9 kB view details)

Uploaded Python 3

File details

Details for the file odoo13_addon_vault-13.0.1.4.0-py3-none-any.whl.

File metadata

File hashes

Hashes for odoo13_addon_vault-13.0.1.4.0-py3-none-any.whl
Algorithm Hash digest
SHA256 f15d455b3151dc4ba0820119ebcb2306dd91214b5f85cce850a0e3f8016ad505
MD5 e2c41e5969c051fd95dd11f0a638a7ca
BLAKE2b-256 331ef7039514d01b20461e3b228ccb6bb5a288442f62922e6c8f125c6cf33393

See more details on using hashes here.

Supported by

AWS AWS Cloud computing and Security Sponsor Datadog Datadog Monitoring Fastly Fastly CDN Google Google Download Analytics Microsoft Microsoft PSF Sponsor Pingdom Pingdom Monitoring Sentry Sentry Error logging StatusPage StatusPage Status page