<html>
  <head>
    <meta content="text/html; charset=utf-8" http-equiv="Content-Type">
  </head>
  <body text="#000000" bgcolor="#FFFFFF">
    <div class="moz-cite-prefix">MidPoint does encrypt values of the
      ProtectedString type automatically. That's implemented for several
      years already. But that happens only when midpoint can reliably
      detect a data type. And the problem is that it cannot reliably
      detect that <value>5ecr3t</value> is ProtectedString.<br>
      <br>
      <pre class="moz-signature" cols="72">-- 
Radovan Semancik
Software Architect
evolveum.com
</pre>
      <br>
      <br>
      On 04/15/2016 11:30 AM, Aivo Kuhlberg wrote:<br>
    </div>
    <blockquote cite="mid:1460712608829.22399@rmit.ee" type="cite">
      <meta http-equiv="Content-Type" content="text/html; charset=utf-8">
      <style type="text/css" style="display:none"><!--P{margin-top:0;margin-bottom:0;} p
        {margin-top:0;
        margin-bottom:0}--></style>
      <p>Hi Ivan, Radovan,<br>
        Thanks for your feedback. I am satisfied with Ivan's solution at
        the moment.<br>
        I'd suggest for future development that when saving xml files
        midPoint could encrypt automatically non-encrypted values.<br>
      </p>
      <p><br>
      </p>
      <p>Regards,</p>
      <p>Aivo Kuhlberg<br>
      </p>
      <div style="font-size:12pt; color:#000000;
        background-color:#FFFFFF;
        font-family:Calibri,Arial,Helvetica,sans-serif" dir="ltr">
        <hr tabindex="-1" style="display:inline-block; width:98%">
        <div id="divRplyFwdMsg" dir="ltr"><font style="font-size:11pt"
            face="Calibri, sans-serif" color="#000000"><b>Saatja:</b>
            midPoint <a class="moz-txt-link-rfc2396E" href="mailto:midpoint-bounces@lists.evolveum.com"><midpoint-bounces@lists.evolveum.com></a>
            nimelAivo Kuhlberg <a class="moz-txt-link-rfc2396E" href="mailto:aivo.kuhlberg@rmit.ee"><aivo.kuhlberg@rmit.ee></a><br>
            <b>Saadetud:</b> 14. aprill 2016 17:27<br>
            <b>Adressaat:</b> midpoint<br>
            <b>Teema:</b> [midPoint] User initial password</font>
          <div> </div>
        </div>
        <div>
          <p>How can I set initial password for midPoint 3.3.1 user when
            I import them from csv-file. I tried to use something like
            that in
          </p>
          <p>schemaHandling section:<br>
            <br>
                <credentials><br>
                    <password><br>
                        <inbound><br>
                            <strength>weak</strength><br>
                            <expression><br>
                                <value>5ecr3t</value><br>
                            </expression><br>
                        </inbound><br>
                    </password><br>
                </credentials><br>
            <br>
            but user import fails with following error:<br>
            Failed to import: java.lang.IllegalStateException:
            Unencrypted value in field
            {<a class="moz-txt-link-freetext" href="http://midpoint.evolveum.com/xml/ns/public/common/common-3">http://midpoint.evolveum.com/xml/ns/public/common/common-3</a>}value
            in user:null(test.user5)<br>
            <br>
            Thanks,<br>
            Aivo Kuhlberg<br>
          </p>
          <br>
          <hr>
          <font face="Arial" size="2" color="Gray">Käesolev e-kiri võib
            sisaldada asutusesiseseks kasutamiseks tunnistatud teavet.<br>
            This e-mail may contain information which is classified for
            official use.</font> </div>
      </div>
      <br>
      <hr>
      <font face="Arial" size="2" color="Gray">Käesolev e-kiri võib
        sisaldada asutusesiseseks kasutamiseks tunnistatud teavet.<br>
        This e-mail may contain information which is classified for
        official use.</font>
      <br>
      <fieldset class="mimeAttachmentHeader"></fieldset>
      <br>
      <pre wrap="">_______________________________________________
midPoint mailing list
<a class="moz-txt-link-abbreviated" href="mailto:midPoint@lists.evolveum.com">midPoint@lists.evolveum.com</a>
<a class="moz-txt-link-freetext" href="http://lists.evolveum.com/mailman/listinfo/midpoint">http://lists.evolveum.com/mailman/listinfo/midpoint</a>
</pre>
    </blockquote>
    <br>
    <br>
  </body>
</html>