Multi Password Hash (LDAP-style)
Description
Password hash plugin that uses existing plugins to generate and verify hash values in an LDAP styled format.
Note: This hash function is not compatible with hashes generated by an LDAP server, it only uses a similar format. For LDAP compatibility, use the LDAP Password Hash.
The syntax is{hash-func}hash-value, where hash-func is the hash function identifier and hash-value is the base64-encoded hash value (except for CLEARTEXT, there the hash is not base64-encoded). Currently supported hash functions are:- SSHA: Salted SHA-1
- SSHA256: Salted SHA-256
- CLEARTEXT: Identity function (results in clear text passwords)
Security Warning: The use of this plugin is discouraged due to security reasons. Consider using "Argon2id Password Hash" instead.
May be used by
TAN Batch Task History Password Hash Adminapp REST API Configuration Persister Password Service Persister Password Service Default Password Repository Default Password Repository Basic Secret Question Settings Administrators Management Token IAK Handler Secret Questions Settings External Database Password Repository External Database Password Repository Credential Secret Generator Persister IAK Verifier Matrix Card Generator Default TAN Service Encrypted Password Hash Combined Password Hash Combined Password Hash Credential Data mTAN Handler Fixed TAN Generator Task AWS KMS Password Hash
Properties
Hash Function (
hashFunction) Description
The hash function used to generate password hashes.
Attributes
Enum
Mandatory
YAML Template (with default values)
type: MultiPasswordHash
id: MultiPasswordHash-xxxxxx
displayName:
comment:
properties:
hashFunction: