httpd-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Vishesh kumar <linuxtovish...@gmail.com>
Subject Re: [users@httpd] mod_authz_dbd + salted and hashed password
Date Thu, 20 Jun 2013 15:25:50 GMT
My understanding is that SHA encryption format does not use salting in
Apache. I think salt can be used with MD5 in Apache.

Thanks
Vishesh Kumar
http://www.linuxmantra.com/


On Thu, Jun 20, 2013 at 8:43 PM, Piotr Pawłowski <
piotr.pawlowski@goyello.com> wrote:

>  Yes, that is obvious. But my hash is a sha1 + salt so in general I have
> a hash string not in sha1 .
> I've just encourage my developers to add new column do table with sha1
> hash. However, I would like to know if there is a possibility to use string
> made of salt and sha1.
>
>
> Best Regards
> ---
> Piotr Pawłowski
> System Administrator
>
> T: +48 58 732 77 71
> M: +48 698 794 378
> E: piotr.pawlowski@goyello.com
> S: piotr.goyello.com
> W: blog.goyello.com
>
> Goyello Sp. z o.o.
> Olivia Gate
> Al. Grunwaldzka 472
> 80-309 Gdańsk
> www.goyello.com
>
> CONFIDENTIALITY. This e-mail and any attachments are confidential and may
> also be privileged. If received in error, please do not disclose the
> contents to anyone, but notify the sender by return e-mail and delete this
> e-mail (and any attachments) from your system. Goyello accepts no liability
> for damage of any kind resulting from the risks inherent in the electronic
> transmission of messages.
>
> Spółka zarejestrowana w Sądzie Rejonowym Gdańsk - Północ w Gdańsku, VII
> Wydział Gospodarczy KRS pod nr 0000269183, NIP 584-259-98-62, kapitał
> zakładowy 50.000 zł
>  ------------------------------
> *From:* Vishesh kumar [linuxtovishesh@gmail.com]
> *Sent:* Thursday, June 20, 2013 16:14
> *To:* users@httpd.apache.org
> *Subject:* Re: [users@httpd] mod_authz_dbd + salted and hashed password
>
>   Apache support SHA1 password but that depends on platform as well.
>
>  Thanks
> Vishesh Kumar
> http://www.linuxmantra.com/
>
>
> On Thu, Jun 20, 2013 at 7:22 PM, Piotr Pawłowski <
> piotr.pawlowski@goyello.com> wrote:
>
>>  Dear all,
>>
>> I have a database with users, who are allowed to see content of my
>> server. Everything were cool untill my developers added salt to hashed
>> (with sha1) password.
>> Is it possible to use such passwords In Apache Httpd ?
>> Thank you in advance for a help.
>>
>> Best Regards
>> ---
>> Piotr Pawłowski
>> System Administrator
>>
>> T: +48 58 732 77 71
>> M: +48 698 794 378
>> E: piotr.pawlowski@goyello.com
>> S: piotr.goyello.com
>> W: blog.goyello.com
>>
>> Goyello Sp. z o.o.
>> Olivia Gate
>> Al. Grunwaldzka 472
>> 80-309 Gdańsk
>> www.goyello.com
>>
>> CONFIDENTIALITY. This e-mail and any attachments are confidential and may
>> also be privileged. If received in error, please do not disclose the
>> contents to anyone, but notify the sender by return e-mail and delete this
>> e-mail (and any attachments) from your system. Goyello accepts no liability
>> for damage of any kind resulting from the risks inherent in the electronic
>> transmission of messages.
>>
>> Spółka zarejestrowana w Sądzie Rejonowym Gdańsk - Północ w Gdańsku, VII
>> Wydział Gospodarczy KRS pod nr 0000269183, NIP 584-259-98-62, kapitał
>> zakładowy 50.000 zł
>>
>
>
>
>  --
> http://linuxmantra.com
>



-- 
http://linuxmantra.com

Mime
View raw message