← Back to plugin index

Persister IAK Verifier

Description
An IAK (initial activation key) verifier based on a password hash function and a credential persister.

This plugin uses a CredentialPersister plugin to read a hash value of the IAK. The hash value is checked using the configured hash function.

If the IAK is successfully verified, the hash value is cleared (null value set).

Type name
PersisterIakVerifier
Class
com.airlock.iam.core.misc.impl.authen.PersisterIakVerifier
May be used by
Properties
Credential Persister (credentialPersister)
Description
The credential persister plugin used to verify (and invalidate) the IAK.
Attributes
Plugin-Link
Mandatory
Assignable plugins
Hash Function (hashFunction)
Description
The password hash function used for verification of the IAK.

NOTE: Some password hashes, such as SHA 256 Password Hash or Scrypt Password Hash, produce binary output. If one of these is used, make sure the persistence layer supports binary data in the hash field and the corresponding persistence plugins (e.g. Database User Store or Ldap Connector) are configured to treat hash values as binary values.
In case the persistence layer expects a string, encode the password hash by wrapping it with an encoder. To achieve this, use the Password Hash Configuration plugin and specify the hash function (such as Scrypt Password Hash) together with the desired encoder. We recommend using the Base64 Password Hash Encoder.

Attributes
Plugin-Link
Mandatory
Assignable plugins
YAML Template (with default values)

type: PersisterIakVerifier
id: PersisterIakVerifier-xxxxxx
displayName: 
comment: 
properties:
  credentialPersister:
  hashFunction: