Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add certificate pinning #160

Open
o-fish-wildaid opened this issue Jul 28, 2020 · 2 comments · May be fixed by #459
Open

Add certificate pinning #160

o-fish-wildaid opened this issue Jul 28, 2020 · 2 comments · May be fixed by #459
Assignees
Labels
days: 2 Estimated to take 2 days to implement desirable: Production Would be nice to fix for first production release enhancement New feature or request hacktoberfest

Comments

@o-fish-wildaid
Copy link
Collaborator

Add certificate pinning to the app

@o-fish-wildaid o-fish-wildaid added the enhancement New feature or request label Jul 28, 2020
@Sheeri Sheeri added this to the Demo v23 8/18 milestone Aug 3, 2020
@Sheeri Sheeri added this to Backlog in O-FISH iOS via automation Aug 3, 2020
@Sheeri Sheeri modified the milestones: Demo v23 8/18, Demo v24 8/25 Aug 19, 2020
@am-MongoDB
Copy link
Collaborator

Before doing anything on the app side, should understand from the Realm team why the SDK is handling this for data access, but not for authentication. Moving to "Blocked"

@am-MongoDB am-MongoDB moved this from Backlog to Blocked in O-FISH iOS Aug 25, 2020
@Sheeri Sheeri modified the milestones: Demo v24 8/25, Demo v25 9/1 Aug 27, 2020
@am-MongoDB am-MongoDB moved this from Blocked to To do in O-FISH iOS Sep 1, 2020
@am-MongoDB
Copy link
Collaborator

According to the Realm team, the SDK no longer performs any certificate pinning – so not sure what made it appear to in the pen testing. Given that, we should go ahead and add certificate pinning for the realm.mongodb.com domain. This is what's been done for the Android app

@Sheeri Sheeri modified the milestones: Demo v25 9/1, Demo v26 9/8 Sep 1, 2020
@Sheeri Sheeri modified the milestones: Demo v26 9/8, Demo v27 9/15 Sep 8, 2020
@am-MongoDB am-MongoDB added days: 2 Estimated to take 2 days to implement desirable: Production Would be nice to fix for first production release labels Sep 14, 2020
@Sheeri Sheeri removed this from the v30 10/6 milestone Oct 1, 2020
@Sheeri Sheeri added this to To do in Hacktoberfest 2020 via automation Oct 1, 2020
@Sheeri Sheeri removed this from To do in O-FISH iOS Oct 1, 2020
@Dmitriy-Holovnia Dmitriy-Holovnia linked a pull request Jun 30, 2022 that will close this issue
5 tasks
@Dmitriy-Holovnia Dmitriy-Holovnia linked a pull request Jun 30, 2022 that will close this issue
5 tasks
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
days: 2 Estimated to take 2 days to implement desirable: Production Would be nice to fix for first production release enhancement New feature or request hacktoberfest
Projects
Development

Successfully merging a pull request may close this issue.

4 participants