Keys are getting unprotected without using crypto.unprotect() from backend | Community
Skip to main content
Level 2
October 8, 2023
Solved

Keys are getting unprotected without using crypto.unprotect() from backend

  • October 8, 2023
  • 2 replies
  • 811 views

Hi,

    I am giving encrypted keys in OSGI configuration, but keys are getting unprotected(decrypted) without using crypto. Unprotect () in backend. Can anyone please help me why this issue is happening. 

      

This post is no longer active and is closed to new replies. Need help? Start a new post to ask your question.
Best answer by aanchal-sikka

Hello @harinivr 

 

Please refer to this blogs: https://www.nextrow.com/blog/adobe-experience-manager/crypto-support-in-aem-to-encrypt-decrypt-data

 

The encrypted value generated for the same plain-text string will differ from one AEM instance to another instance because keys are unique to each instance. Thus, its the AEM only who can encrypt and decrypt.

 

2 replies

aanchal-sikka
Community Advisor
aanchal-sikkaCommunity AdvisorAccepted solution
Community Advisor
October 9, 2023

Hello @harinivr 

 

Please refer to this blogs: https://www.nextrow.com/blog/adobe-experience-manager/crypto-support-in-aem-to-encrypt-decrypt-data

 

The encrypted value generated for the same plain-text string will differ from one AEM instance to another instance because keys are unique to each instance. Thus, its the AEM only who can encrypt and decrypt.

 

Aanchal Sikka
HariniVRAuthor
Level 2
October 11, 2023

Thanks for the reply, now got it.

arunpatidar
Community Advisor
Community Advisor
October 9, 2023

Hi @harinivr 
AEM provides a Configuration Plugin to decrypt configuration properties. This AEM Plugin will automatically decrypt and retrieve the clear text from osgi properties.

https://experienceleague.adobe.com/docs/experience-manager-65/administering/security/encryption-support-for-configuration-properties.html?lang=en#decryption-support 

 

Arun Patidar