[jdev] MD5 auth problem

Norman Rasmussen norman at rasmussen.co.za
Thu May 25 04:09:16 CDT 2006


On 5/25/06, Ulrich Staudinger <us at activestocks.de> wrote:
> has someone a good solution how to reuse an existing community site with
> md5'd passwords with a jabber server? Only plain passwords can be
> accepted by the jabber server, which can be checked against the md5'd
> passwords from the existing community, but digest login for example, is
> not possible.
correct, there's no way to use the md5 hashed passwords for non-plain
sasl auths at-the-moment.

> Any solution ?
use plain, force tls/ssl?

> Do we need a new authentication mechanism ? :-)
some sort of non-challenge md5? that would be just as secure as plain.

-- 
- Norman Rasmussen
 - Email: norman at rasmussen.co.za
 - Home page: http://norman.rasmussen.co.za/



More information about the JDev mailing list