Re: [HACKERS] On-disk format of SCRAM verifiers

Поиск
Список
Период
Сортировка
От Heikki Linnakangas
Тема Re: [HACKERS] On-disk format of SCRAM verifiers
Дата
Msg-id 44c0cba4-3f06-6c9e-1a98-1bb9621fbec5@iki.fi
обсуждение исходный текст
Ответ на Re: [HACKERS] On-disk format of SCRAM verifiers  (Simon Riggs <simon@2ndquadrant.com>)
Список pgsql-hackers
On 04/21/2017 05:33 PM, Simon Riggs wrote:
> On 21 April 2017 at 14:42, Heikki Linnakangas <hlinnaka@iki.fi> wrote:
>
>>>>> SCRAM-SHA-256$<iteration count>:<salt>$<StoredKey>:<ServerKey>
>>>>
>>>> Could you explain where you are looking? I don't see that in RFC5803
>>>
>> >From 1.  Overview:
>>
>> Yeah, it's not easy to see, I missed it earlier too. You have to look at RFC 5803 and RFC 3112 together. RFC 3112
saysthat the overall format is "<scheme>$<authInfo>$<authValue>", and RFC5803 says that for SCRAM, scheme is
"SCRAM-SHA-256"(for our variant), authInfo is "<iteration count>:<salt>" and authValue is "<StoredKey>:<ServerKey>"
 
>>
>> They really should've included examples in those RFCs.
>
> Thanks
>
> +1 for change

Committed, thanks.

- Heikki




В списке pgsql-hackers по дате отправления:

Предыдущее
От: Peter Eisentraut
Дата:
Сообщение: Re: [HACKERS] Old versions of Test::More
Следующее
От: Heikki Linnakangas
Дата:
Сообщение: Re: [HACKERS] scram and \password