[JIRA] (JENKINS-60705) Add support for SCRAM-SHA-1(-PLUS), SCRAM-SHA-256(-PLUS)

1 view
Skip to first unread message

Neustradamus@hotmail.com (JIRA)

unread,
Jan 8, 2020, 8:00:03 PM1/8/20
to jenkinsc...@googlegroups.com
Neustradamus * created an issue
 
Jenkins / Improvement JENKINS-60705
Add support for SCRAM-SHA-1(-PLUS), SCRAM-SHA-256(-PLUS)
Issue Type: Improvement Improvement
Assignee: Florian Schmaus
Components: jabber-plugin, jabber-server-plugin
Created: 2020-01-09 00:59
Priority: Blocker Blocker
Reporter: Neustradamus *

"When using the SASL SCRAM mechanism, the SCRAM-SHA-256-PLUS variant SHOULD be preferred over the SCRAM-SHA-256 variant, and SHA-256 variants [RFC7677] SHOULD be preferred over SHA-1 variants [RFC5802]".

There is only SCRAM-SHA-1, there is not SCRAM-SHA-1-PLUS:

There is not SCRAM-SHA-256(-PLUS):

I add SCRAM-SHA-512(-PLUS): https://xmpp.org/extensions/inbox/hash-recommendations.html

-PLUS variants:

LDAP:

  • RFC5803: Lightweight Directory Access Protocol (LDAP) Schema for Storing Salted: Challenge Response Authentication Mechanism (SCRAM) Secrets: https://tools.ietf.org/html/rfc5803

HTTP:

IANA:

Linked to:

Add Comment Add Comment
 
This message was sent by Atlassian Jira (v7.13.6#713006-sha1:cc4451f)
Atlassian logo
Reply all
Reply to author
Forward
0 new messages