From 74e563da7fa6886449fd2be5933e2d4ca5c85f48 Mon Sep 17 00:00:00 2001 From: jack <jack.su@pollex.com.tw> Date: 星期二, 12 九月 2023 11:25:52 +0800 Subject: [PATCH] [UPDATE] 解決弱點Se: Incorrect definition of Serializable class [UPDATE] 解決弱點Information exposure to log file [UPDATE] 解決弱點Use of hard-coded password --- pamapi/src/main/resources/config/application-prod.yml | 22 ++++++++++++---------- 1 files changed, 12 insertions(+), 10 deletions(-) diff --git a/pamapi/src/main/resources/config/application-prod.yml b/pamapi/src/main/resources/config/application-prod.yml index 4083150..66f50cc 100644 --- a/pamapi/src/main/resources/config/application-prod.yml +++ b/pamapi/src/main/resources/config/application-prod.yml @@ -15,9 +15,9 @@ logging: level: - ROOT: INFO - tech.jhipster: INFO - com.pollex.pam: INFO + ROOT: DEBUG + tech.jhipster: DEBUG + com.pollex.pam: DEBUG management: metrics: @@ -35,7 +35,7 @@ type: com.zaxxer.hikari.HikariDataSource hikari: poolName: Hikari - jndi-name: omoMSSQLXA + jndi-name: java:jboss/jdbc/pam jpa: database-platform: tech.jhipster.domain.util.FixedPostgreSQL10Dialect # Replace by 'prod, faker' to add the faker context and have sample data loaded in production @@ -132,24 +132,26 @@ # PROD�憓�Ⅱ隤� application: mock-login: false - otp-web-service-url: https://vtwlifeopensysuat.pru.intranet.asia/pcalife-otp/ws/otpWebService?wsdl + otp-web-service-url: https://vtwlifeopensystem.pru.intranet.asia/pcalife-otp/ws/otpWebService?wsdl otp-web-service-password: es20!%Pass - otp-web-service-system-type: epos - e-service-login-url: https://eserviceuat.pcalife.com.tw/sso/chatbotValidate + otp-web-service-system-type: omo + e-service-login-url: https://www.eservice.pcalife.com.tw/sso/chatbotValidate e-service-login-func: ValidateUsrLogin e-service-login-sys: epos - front-end-domain: 'https://onlineuat.pcalife.com.tw/pam/#' + front-end-domain: 'https://online.pcalife.com.tw/pam/#' sms: send-notify-msg: true - url: https://vtwlifeopensysuat.pru.intranet.asia/MesgQueueMgmnt/rest/smsSendMsgResource + url: https://vtwlifeopensystem.pru.intranet.asia/MesgQueueMgmnt/rest/smsSendMsgResource source-code: ePos sender: POS sms-type: '0017' subject: '慦�像��' email: send-notify-msg: true - url: https://vtwlifeopensysuat.pru.intranet.asia/tsgw/mq/mqSendMail + url: https://vtwlifeopensystem.pru.intranet.asia/tsgw/mq/mqSendMail function-id: epos sender-email: noreply@pcalife.com.tw method: 'PAM_EMAIL_SERVICE' file-folder-path: /sfs_omo/AgentPhoto/ + aes-key: PAMKEY1234567890 + default-paxxword: -- Gitblit v1.8.0