Werk #15187: Enforce password policy in REST API and user management

Komponente Setup
Titel Enforce password policy in REST API and user management
Datum 03.02.2023
Checkmk Edition Checkmk Raw (CRE)
Checkmk-Version 2.0.0p34 2.1.0p21 2.2.0b1
Level Kleine Änderung
Klasse Bugfix
Kompatibilität Kompatibel - benötigt kein manuelles Eingreifen

Prior to this Werk both the REST API and the user management UI (Setup > Users) did not correctly enforce the password policy for local accounts.

As a result, administrators with the "User management" permission could set passwords that don't comply with the policy for their own or other users' accounts.

Note that the "Change password" option in the user profile menu was not affected by the issue and correctly checked the password policy.

Zur Liste aller Werks