Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

SCRAM-SHA-1(-PLUS) + SCRAM-SHA-256(-PLUS) + SCRAM-SHA-512(-PLUS) supports #4

Open
Neustradamus opened this issue Nov 8, 2020 · 4 comments

Comments

@Neustradamus
Copy link

Neustradamus commented Nov 8, 2020

Can you add supports in Net_LDAP2?

Note, after SCRAM-SHA-1(-PLUS):

"When using the SASL SCRAM mechanism, the SCRAM-SHA-256-PLUS variant SHOULD be preferred over the SCRAM-SHA-256 variant, and SHA-256 variants [RFC7677] SHOULD be preferred over SHA-1 variants [RFC5802]".

https://xmpp.org/extensions/inbox/hash-recommendations.html

-PLUS variants:

LDAP:

  • RFC5803: Lightweight Directory Access Protocol (LDAP) Schema for Storing Salted: Challenge Response Authentication Mechanism (SCRAM) Secrets: https://tools.ietf.org/html/rfc5803

HTTP:

2FA:

IANA:

Linked to:

@hbeni
Copy link
Collaborator

hbeni commented Nov 8, 2020

No, that is the task of the underlying php ldap extension, as far as i understand...

@Neustradamus
Copy link
Author

@hbeni: Thanks for your reply but I have not understand your answer.
What "underlying php ldap extension"?

@hbeni
Copy link
Collaborator

hbeni commented Nov 8, 2020

Net_LDAP is an object oriented interface to the php ldap functions. These are provided by the php ldap module. The php module handles connection stuff like ssl snd ciphers.

Or maybe i don’t understand something?

Btw this pear module is not maintained for some time already

@Neustradamus
Copy link
Author

@hbeni: Roundcube, for example, uses a fork of Net_LDAP2 and @alecpl has done a comment here:

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants