{PATCH] store extra password hashes in supplemental credentials

Gary Lockyer gary at catalyst.net.nz
Tue Apr 11 22:57:46 UTC 2017


Completed patch set to:
- Calculate SHA256 and SHA512 password hashes and store in
  supplementalCredentials Primary:userPassword
- add configuration options to control the generation of these
  hashes and the number of rounds used to calculate them.
  * 'password hash additional scheme'
  * 'password hash sha256 rounds'
  * 'password hash sha512 rounds'
- add new virtual attributes virtualWDigest01 to virtualWDigest29 to
  make the WDigest values available
- change virtualCryptSHA256 and virtualCryptSHA512 to:
  * return the stored values in Primary:userPassword if available
  * honor 'password hash sha256 rounds' and
    'password hash sha512 rounds' when calculating the hashes.

Review appreciated

Gary
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0001-idl-drsblobs-add-the-blobs-required-for-Primary-user.patch
Type: text/x-patch
Size: 2419 bytes
Desc: not available
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20170412/491815da/0001-idl-drsblobs-add-the-blobs-required-for-Primary-user.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0002-docs-configuration-options-for-Primary-userPassword.patch
Type: text/x-patch
Size: 6897 bytes
Desc: not available
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20170412/491815da/0002-docs-configuration-options-for-Primary-userPassword.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0003-tests-password_hash-remove-unused-import.patch
Type: text/x-patch
Size: 800 bytes
Desc: not available
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20170412/491815da/0003-tests-password_hash-remove-unused-import.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0004-tests-password_hash-fix-white-space.patch
Type: text/x-patch
Size: 1460 bytes
Desc: not available
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20170412/491815da/0004-tests-password_hash-fix-white-space.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0005-tests-password_hash-add-tests-for-Primary-userPasswo.patch
Type: text/x-patch
Size: 16541 bytes
Desc: not available
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20170412/491815da/0005-tests-password_hash-add-tests-for-Primary-userPasswo.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0006-password_hash-generate-and-store-Primary-userPasswor.patch
Type: text/x-patch
Size: 10797 bytes
Desc: not available
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20170412/491815da/0006-password_hash-generate-and-store-Primary-userPasswor.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0007-samba-tool-tests-Tests-for-virtualWDigest-and-virtua.patch
Type: text/x-patch
Size: 22008 bytes
Desc: not available
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20170412/491815da/0007-samba-tool-tests-Tests-for-virtualWDigest-and-virtua.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0008-samba-tool-user-add-support-for-userPassword-and-WDi.patch
Type: text/x-patch
Size: 13590 bytes
Desc: not available
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20170412/491815da/0008-samba-tool-user-add-support-for-userPassword-and-WDi.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 473 bytes
Desc: OpenPGP digital signature
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20170412/491815da/signature.sig>


More information about the samba-technical mailing list