[Kolab-devel] [issue1013] user passwords sha1 encoded without salt

Sascha Wilde kolab-issues at intevation.de
Thu Dec 1 09:49:54 CET 2005


New submission from Sascha Wilde <wilde at intevation.de>:

The passwords for ordinary users are saved as sha1 hashes without salt
in the ldap.  

The password of the manager account in contrast is saved as salted sha 
hash {SSHA}[0] which IMO is the right thing to do.

Things should be change, so that all passwords get stored as salted 
sha hashes.

----------
messages: 5971
nosy: wilde
priority: minor bug
status: unread
title: user passwords sha1 encoded without salt
________________________________________________
Kolab issue tracker <kolab-issues at intevation.de>
<https://intevation.de/roundup/kolab/issue1013>
________________________________________________




More information about the devel mailing list