onResponse-for-securityAnswer.js revision 27b2ac15d8015fcdd3a940b10e788f408903670e
/*! @license
* DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS HEADER.
*
* Copyright © 2011-2012 ForgeRock AS. All rights reserved.
*
* The contents of this file are subject to the terms
* of the Common Development and Distribution License
* (the License). You may not use this file except in
* compliance with the License.
*
* You can obtain a copy of the License at
* http://forgerock.org/license/CDDLv1.0.html
* See the License for the specific language governing
* permission and limitations under the License.
*
* When distributing Covered Code, include this CDDL
* Header Notice in each file and include the License file
* at http://forgerock.org/license/CDDLv1.0.html
* If applicable, add the following below the CDDL Header,
* with the fields enclosed by brackets [] replaced by
* your own identifying information:
* "Portions Copyrighted [year] [name of copyright owner]"
*/
/**
* @author yaromin
*
* This script checks if security answer passed in parameters
* equals user's security answer.
*
* It is run on response to for-securityAnswer query.
*/
if(response.result && (!response.result.length || !response.result[0].securityAnswer || openidm.decrypt(response.result[0].securityAnswer)!=request.params['securityAnswer'])) {
delete response.result;
} else {
response.result = "correct";
}