Re: WIP: SCRAM authentication

Поиск
Список
Период
Сортировка
От Greg Stark
Тема Re: WIP: SCRAM authentication
Дата
Msg-id CAM-w4HOm-kRnz7Fe9nnoOdeO6OQWti42GhTNcXO17uWRjE5Scw@mail.gmail.com
обсуждение исходный текст
Ответ на Re: WIP: SCRAM authentication  (Heikki Linnakangas <hlinnaka@iki.fi>)
Список pgsql-hackers
On Sat, Aug 8, 2015 at 6:23 PM, Heikki Linnakangas <hlinnaka@iki.fi> wrote:
> Like Joe and Stephen, I actually find it highly confusing that we call the
> MD5 hash an "encrypted password". The term "password verifier" is fairly
> common in the specifications of authentication mechanisms. I think we should
> adopt it.

Speaking as someone who hasn't read the specifications I found
"password verifier" surprising. I would have known what "password
hash" was but I misread "verifier" to be something functional like a
PAM plugin. I tend to agree we should just use terminology out of the
specs though even if it's a little opaque, better one opaque piece of
terminology than having to learn and translate between multiple
terminologies.


-- 
greg



В списке pgsql-hackers по дате отправления:

Предыдущее
От: Bruce Momjian
Дата:
Сообщение: Re: 9.5 release notes
Следующее
От: Bruce Momjian
Дата:
Сообщение: Re: 9.5 release notes