[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: SASL Semantics Within LDAP



Roger Harrison writes:
>> As I wrote in that old message (a bit less clearly:$,1rq(B), I wonder if
>> both the quoted text and the original authmeth DIGEST$,1rq(BMD5 text is too
>> strict, though I didn't know what to do about it at the time:
>>
>> Formally, I imagine the server could regard <cn=Bob,...> and
>> <cn=bob,...> as different DIGEST$,1rq(BMD5 usernames which have the same
>> password
>> (...)
>
> I think this example will be OK because it is correct (to the best of
> my knowledge)

I've not a clue myself.

> and it isn't meant to exhaustively enumerate the issues with
> DIGEST-MD5 semantics relative to LDAP such as the method used to
> generate a hash value.

No, I was only suggesting s/will fail/may fail/ at this time.
Or "can fail".  A long explanation for a short word:-)

-- 
Hallvard