CKAN extension that adds password policy for all the users. With this extension You can set up minimum password length and password complexity (password must consist capital and small letters, number and special characters, and may not contain the user's name or username). A user lock on defined time period after x number of failed logins is also implemented.
This extension is compatible with CKAN 2.11+.
Compatibility with core CKAN versions:
| CKAN version | Compatible? |
|---|---|
| 2.10 | not tested |
| 2.11 | Yes |
To install ckanext-password-policy:
-
Activate your CKAN virtual environment, for example:
. /usr/lib/ckan/default/bin/activate
-
Clone the source and install it on the virtualenv
git clone https://github.com/opendata-swiss/ckanext-password-policy.git cd ckanext-password-policy pip install -e . -
Add
password_policyto theckan.pluginssetting in your CKAN config file (by default the config file is located at/etc/ckan/default/ckan.ini). -
Restart CKAN. For example if you've deployed CKAN with Apache on Ubuntu:
sudo service apache2 reload
See ckanext/password_policy/config_declaration.yaml.
To install ckanext-password-policy for development, activate your CKAN virtualenv and do:
git clone https://github.com/opendata-swiss/ckanext-password-policy.git
cd ckanext-password-policy
pip install -e .[dev]
To run the tests, do:
pytest --ckan-ini=test.ini
If ckanext-password-policy should be available on PyPI you can follow these steps to publish a new version:
-
Update the version number in the
setup.pyfile. See PEP 440 for how to choose version numbers. -
Make sure you have the latest version of necessary packages:
pip install --upgrade setuptools wheel twine
-
Create a source and binary distributions of the new version:
python setup.py sdist bdist_wheel && twine check dist/*Fix any errors you get.
-
Upload the source distribution to PyPI:
twine upload dist/* -
Commit any outstanding changes:
git commit -a git push -
Tag the new release of the project on GitHub with the version number from the
setup.pyfile. For example if the version number insetup.pyis 0.0.1 then do:git tag 0.0.1 git push --tags