OpenBankProject / OpenBankProject/OBP-API

create getTransactionRequestAuthCodeHash function and sendSecurityChallenge

Open
#483 1 comment 0 reactions 1 assignee View on GitHub

@hongwei1 is already working on this.

Since Mar 23, 2017.

Dominant language
Scala
Stars
1.7k
Forks
482
Avg merge
1d 12h
Merged PRs (30d)
15

Description

To generate an authCode to be sent OOB to the customer so they can confirm a transaction.

We'll produce a hash which includes the authCode (say 5 character pin) the details of the transaction it should confirm i.e. something like:

def getAuthCodeHash = sha256 (authCode +
account +
amount +
currency +
counterparty.(all fields) +
transactionRequestId)

Then we'll create a new connector function: sendSecurityChallenge (bankId: BankId, accountId: AccountId, userId: String, transactionRequestType: TransactionRequestType, transactionRequestId: String, authCode: String, authCodeHash: String)

which is similar to createSecurityChallenge but lets us send the authCode and its hash.

e.g.

authCode = Random(5 numbers)

authCodeHash = getAuthCodeHash(...)

sendSecurityChallenge(....challengeId, authCode, authCodeHash)
note we create the challengeId locally so we can store it in the transaction request

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.