SecretEnvelopeNotAllowedException
Namespace: Meshmakers.Octo.Runtime.Contracts.Secrets
Thrown when an enc:v2 envelope is found where only legacy values may be: as the text of a
RtSecretValueState.LegacyPlaintext value, i.e. a string stored in a Secret slot
(AB#5532, decryption-oracle hardening).
public class SecretEnvelopeNotAllowedException : InvalidOperationException, ISerializable
Inheritance Object → Exception → SystemException → InvalidOperationException → SecretEnvelopeNotAllowedException
Implements ISerializable
Remarks:
A legacy string is clear text or enc:v1 written before the attribute became Secret; nothing
legitimate stores an enc:v2 envelope as a string - the engine always writes it as the
protected sub-document. An enc:v2 text in a string slot was copied there (for example into a
String attribute before it was migrated to Secret), and decrypting or re-protecting it would hand
another entity's secret to whoever can write that string. It is refused, never decrypted; the
secret sweep reports it as failed and leaves it as stored. The message never contains the value.
Properties
TenantId
Tenant of the entity, when known.
public string TenantId { get; }
Property Value
CkTypeId
CK type of the entity, when known.
public string CkTypeId { get; }
Property Value
AttributeName
Name of the Secret attribute, when known.
public string AttributeName { get; }
Property Value
TargetSite
public MethodBase TargetSite { get; }
Property Value
Message
public string Message { get; }
Property Value
Data
public IDictionary Data { get; }
Property Value
InnerException
public Exception InnerException { get; }
Property Value
HelpLink
public string HelpLink { get; set; }
Property Value
Source
public string Source { get; set; }
Property Value
HResult
public int HResult { get; set; }
Property Value
StackTrace
public string StackTrace { get; }
Property Value
Constructors
SecretEnvelopeNotAllowedException(String, String, String)
Creates a new instance.
public SecretEnvelopeNotAllowedException(string tenantId, string ckTypeId, string attributeName)
Parameters
tenantId String
Tenant of the entity, when known
ckTypeId String
CK type of the entity, when known
attributeName String
Name of the Secret attribute, when known