Hi,

Is there any chance Google will support other forms of password
hashing in addition to SHA-1? MD5 would be nice (and AFAIK it's not
broken for this kind of applications), but even more useful would be
the HA1 part of the standard HTTP Digest authentication (RFC 2069), as
described here: http://en.wikipedia.org/wiki/Digest_authentication .
Currently, I believe most users wishing to use Google Apps with their
own systems need to keep users' passwords locally in plain text, in
order to generate all the hash variants they use for various login
systems. Using the RFC one would at least help some of them.

--~--~---------~--~----~------------~-------~--~----~
You received this message because you are subscribed to the Google Groups 
"Google Apps APIs" group.
To post to this group, send email to [email protected]
To unsubscribe from this group, send email to [EMAIL PROTECTED]
For more options, visit this group at 
http://groups.google.com/group/google-apps-apis?hl=en
-~----------~----~----~----~------~----~------~--~---

Reply via email to