From 74e563da7fa6886449fd2be5933e2d4ca5c85f48 Mon Sep 17 00:00:00 2001 From: jack <jack.su@pollex.com.tw> Date: 星期二, 12 九月 2023 11:25:52 +0800 Subject: [PATCH] [UPDATE] 解決弱點Se: Incorrect definition of Serializable class [UPDATE] 解決弱點Information exposure to log file [UPDATE] 解決弱點Use of hard-coded password --- pamapi/src/main/resources/config/application-dev.yml | 25 ++++++++++++++++++------- 1 files changed, 18 insertions(+), 7 deletions(-) diff --git a/pamapi/src/main/resources/config/application-dev.yml b/pamapi/src/main/resources/config/application-dev.yml index 0a037ec..bc4db38 100644 --- a/pamapi/src/main/resources/config/application-dev.yml +++ b/pamapi/src/main/resources/config/application-dev.yml @@ -33,7 +33,7 @@ datasource: type: com.zaxxer.hikari.HikariDataSource url: jdbc:postgresql://dev.pollex.com.tw:5433/pam_p2 - #url: jdbc:postgresql://localhost:5432/omo?currentSchema=omo + #url: jdbc:postgresql://localhost:5432/omo?currentSchema=public username: pamadmin password: pamadmin hikari: @@ -45,10 +45,16 @@ # Remove 'faker' if you do not want the sample data to be loaded automatically contexts: dev, faker mail: - host: localhost - port: 25 - username: - password: + host: smtp.gmail.com + port: 587 + username: pollex.testing@gmail.com + password: ilismmmhtscppxft + properties: + mail: + smtp: + auth: true + starttls: + enable: true messages: cache-duration: PT1S # 1 second, see the ISO 8601 standard thymeleaf: @@ -119,15 +125,20 @@ e-service-login-url: https://eserviceuat.pcalife.com.tw/sso/chatbotValidate e-service-login-func: ValidateUsrLogin e-service-login-sys: epos - front-end-domain: http://localhost:3000 - send-notify-msg: false + front-end-domain: 'http://localhost:3000/#' sms: + send-notify-msg: false url: https://localhost:8081/testSMS source-code: ePos sender: POS sms-type: '0017' subject: '慦�像��' email: + send-notify-msg: false url: https://localhost:8081/testEmail function-id: epos + sender-email: noreply@pcalife.com.tw + method: 'POLLEX_GMAIL' file-folder-path: C://pam_file + aes-key: PAMKEY1234567890 + default-paxxword: -- Gitblit v1.8.0