Persister IAK Verifier
This plugin uses a CredentialPersister plugin to read a hash value of the IAK. The hash value is checked using the configured hash function.
If the IAK is successfully verified, the hash value is cleared (null value set).
credentialPersister) hashFunction) NOTE: Some password hashes, such as SHA 256 Password Hash or Scrypt Password Hash, produce binary output. If one of these is used, make sure the persistence layer supports binary data in the hash field and the corresponding persistence plugins (e.g. Database User Store or Ldap Connector) are configured to treat hash values as binary values.
In case the persistence layer expects a string, encode the password hash by wrapping it with an encoder. To achieve this, use the Password Hash Configuration plugin and specify the hash function (such as Scrypt Password Hash) together with the desired encoder. We recommend using the Base64 Password Hash Encoder.
type: PersisterIakVerifier
id: PersisterIakVerifier-xxxxxx
displayName:
comment:
properties:
credentialPersister:
hashFunction: