On Wed, 18 Aug 2004, Elliot F. wrote:

> Which option is not open for you?  Using clear text passwords?  Unless
> I'm mistaken (which I would like to be), digest-md5 would require clear
> text password storage as well.

I just had a quick look, but the docs seemed to say that digest-md5 did
support 3rd party authentication services.

> Perhaps if it would  work if the
> passwords were stored as MD5 in the backend?  Or is there a requirement
> to hash the clear password?  Any links to example digest-md5
> conversations would be appreciated.  RFC2554 gives an example CRAM-MD5,
> but no Digest-MD5.

I think rfc2831 specifies digest-md5.
  Cheers.

-- 
Mark Powell - UNIX System Administrator - The University of Salford
Information Services Division, Clifford Whitworth Building,
Salford University, Manchester, M5 4WT, UK.
Tel: +44 161 295 4837  Fax: +44 161 295 5888  www.pgp.com for PGP key

Reply via email to