From firstname.lastname@example.org on August 26, 2013 00:15:39
NOTE: Originally posted to OWASP ESAPI-Dev mailing list on 2013/08/23 by Philippe Arteau <email@example.com>. What steps will reproduce the problem? 1. Add the cipher mode OFB" to the test version of ESAPI.properties to the property Encryptor.cipher_modes.additional_allowed so it reads:
2. Execute the attached JUnit test.
3. Observe that the encryption succeeds.
What is the expected output?
An EncryptionException should be thrown with an exception message of:
"Decryption failed; see logs for details."
What do you see instead?
The subsequent decryption attempt succeeds.
Original issue: http://code.google.com/p/owasp-esapi-java/issues/detail?id=306