"M. Bastin" <marcbastin(at)mindspring(dot)com> writes:
> However I must be doing something wrong. This is what I do:
> "md5" + MD5( MD5(Password + UserName) + Salt)
> Is this a correct interpretation of your explanation?
Looks right to me. Do you have the MD5 algorithm correct?
> (To this I
> still need to add the zero byte for termination, isn't it?
Yeah, IIRC the contents of the Password message are a zero-terminated
string. Check the protocol document.
You might try testing with plain-text password auth method to make sure
you have the basic Password-message mechanics down, before you go on
regards, tom lane
In response to
pgsql-novice by date
|Next:||From: M. Bastin||Date: 2003-05-29 15:40:30|
|Subject: Re: MD5 salt|
|Previous:||From: Tom Lane||Date: 2003-05-29 14:52:35|
|Subject: Re: OIDs of data types |