Miquel Brazil
01/24/2020, 4:33 PMimg tag whose source points to a transparent PNG file. The Suitelet downloads the file, base64encodes it and the produces a hash using another identifier as a salt. This hash is compared to the known value for this hash contained in NetSuite already. If they match then the request is considered verified and responded to. On a daily basis, we generate and upload a new, slightly different transparent image to a specific folder in NetSuite, which kicks off a process of generating a new hash from the new file, uploading itself to an S3 bucket where it will overwrite the previous version but keep the same name. This URL is hardcorded onto the external webpage which is always receiving the most recent version and so the hashing process should match. My question is can anyone see any obvious flaws in this auth flow that I may not have considered.mayerlench
01/24/2020, 4:34 PMMiquel Brazil
01/24/2020, 4:35 PMMiquel Brazil
01/24/2020, 4:36 PMmayerlench
01/24/2020, 4:36 PMMiquel Brazil
01/24/2020, 4:38 PMbattk
01/24/2020, 4:42 PMMiquel Brazil
01/24/2020, 4:44 PMMiquel Brazil
01/24/2020, 4:45 PMMiquel Brazil
01/24/2020, 4:47 PMMiquel Brazil
01/24/2020, 4:48 PMbattk
01/24/2020, 4:50 PMMiquel Brazil
01/24/2020, 4:50 PMMiquel Brazil
01/24/2020, 4:51 PMbattk
01/24/2020, 4:51 PMMiquel Brazil
01/24/2020, 4:52 PMMiquel Brazil
01/24/2020, 4:52 PMbattk
01/24/2020, 4:55 PMMiquel Brazil
01/24/2020, 4:55 PMMiquel Brazil
01/24/2020, 4:55 PMbattk
01/24/2020, 4:57 PMMiquel Brazil
01/24/2020, 4:58 PMMiquel Brazil
01/24/2020, 4:58 PMMiquel Brazil
01/24/2020, 4:59 PMbattk
01/24/2020, 4:59 PMbattk
01/24/2020, 5:00 PMMiquel Brazil
01/24/2020, 5:00 PMMiquel Brazil
01/24/2020, 5:00 PMbattk
01/24/2020, 5:03 PMMiquel Brazil
01/24/2020, 5:04 PMbattk
01/24/2020, 5:04 PMMiquel Brazil
01/24/2020, 5:05 PMbattk
01/24/2020, 5:05 PMMiquel Brazil
01/24/2020, 5:07 PMbattk
01/24/2020, 5:09 PMMiquel Brazil
01/24/2020, 5:09 PMMiquel Brazil
01/24/2020, 5:10 PMbattk
01/24/2020, 5:11 PMMiquel Brazil
01/24/2020, 5:11 PM<div><img src="some_file" /><img src="some_other_file" /><img src="some_different_file" /></div>Miquel Brazil
01/24/2020, 5:12 PMbattk
01/24/2020, 5:13 PMbattk
01/24/2020, 5:16 PMbattk
01/24/2020, 5:17 PMMiquel Brazil
01/24/2020, 5:19 PMMiquel Brazil
01/24/2020, 5:19 PMbattk
01/24/2020, 5:20 PMMiquel Brazil
01/24/2020, 5:20 PMbattk
01/24/2020, 5:20 PMbattk
01/24/2020, 5:21 PMMiquel Brazil
01/24/2020, 5:22 PMbattk
01/24/2020, 5:22 PMMiquel Brazil
01/24/2020, 5:23 PMMiquel Brazil
01/24/2020, 5:23 PM<HEAD> of the DOM and sending that as a second parameterbattk
01/24/2020, 5:24 PMMiquel Brazil
01/24/2020, 5:25 PMbattk
01/24/2020, 5:26 PMMiquel Brazil
01/24/2020, 5:26 PMMiquel Brazil
01/24/2020, 5:27 PMbattk
01/24/2020, 5:27 PMMiquel Brazil
01/24/2020, 5:28 PMbattk
01/24/2020, 5:28 PMMiquel Brazil
01/24/2020, 5:29 PM