[Date Prev][Date Next]
Re: pwdCheckQuality and password hashing
I'm using pwdCheckQuality to enforce password quality restrictions for
the userPassword attribute. In order for this to work the password has
to be received on the server end in plain text. Which is fine. But when
OpenLDAP stores the password it stores it in plain text (base64 encoded).
Is there some overlay that will encrypt the userPassword before storing it?
You can use the ppolicy_hash_cleartext directive in slapo-ppolicy.
Raymond B. Edah