Uploaded image for project: 'Guacamole'
  1. Guacamole
  2. GUACAMOLE-1391

Add support for hashing passwords with SHA-256 in user-mapping.xml

VotersWatch issueWatchersLinkCloneUpdate Comment AuthorReplace String in CommentUpdate Comment VisibilityDelete Comments
    XMLWordPrintableJSON

    Details

    • Type: Improvement
    • Status: Closed
    • Priority: Minor
    • Resolution: Implemented
    • Affects Version/s: 1.3.0
    • Fix Version/s: 1.4.0
    • Component/s: guacamole-client
    • Labels:
      None

      Description

      Currently, the `user-mapping.xml` file only supports plain-text or MD5. While it is typically expected that this authentication mechanism is only used for small proof-of-concept deployments, it may still be widely used for smaller deployments, like in a home-lab or small business with a limited IT team.

       

      The changes I'm proposing would add support for the SHA-256 hashing algorithm  to bring the authentication mechanism into the current cryptographic era. MD5 has been broken since near the turn of the century and SHA1 just a few years ago.

        Attachments

          Activity

            People

            • Assignee:
              Unassigned
              Reporter:
              abitson Andrew Bitson

              Dates

              • Created:
                Updated:
                Resolved:

                Issue deployment