-
Sub-task
-
Resolution: Done
-
Major
-
None
-
None
-
None
RFC2256 defines the userPassword attribute on LDAP entries, officially this is supposed to be clear text - however many vendors now support a one way hash where the hash algorithm is specified at the beginning of the attribute value: -
{ssha}izu672WN0xA2ZaYofeiWyQ5QKxEBMNsbyQKwRw==
( 2.5.4.35 NAME 'userPassword' DESC 'RFC2256/2307: password of user' EQUALITY octetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 USAGE userApplications X-SCHEMA 'system' )