Current Series Release Notes

27.0.0-14

New Features

  • bug 2060972 Added new configuration option [security_compliance] report_invalid_password_hash to enable and configure reporting of hashes of submitted invalid passwords, which could be used to facilitate analysis of failed login attempts (as per PCI DSS requirements). The corresponding Keystone specification - Include invalid password details in audit messages.