]> git.ipfire.org Git - thirdparty/libvirt.git/commit
docs: stop mentioning insecure / broken SASL mechanisms
authorDaniel P. Berrangé <berrange@redhat.com>
Thu, 4 Mar 2021 18:02:53 +0000 (18:02 +0000)
committerDaniel P. Berrangé <berrange@redhat.com>
Wed, 17 Mar 2021 09:31:57 +0000 (09:31 +0000)
commit0a92f70c8fd5219e8d2d41ccdf1bbdcd26db8de4
tree876c8d4b8d36365eebf3a70d351daaafea2f20b9
parentdb5b97d114519ce5eea17caa44b48efd3cdd6a73
docs: stop mentioning insecure / broken SASL mechanisms

We don't need to go to the trouble of telling users about existance of
insecure SASL mechanisms only to then say that they shouldn't be used.
We should only tell people about the GSSAPI mechanism for TCP sockets.

For the SCRAM mechanism we should be telling people about the SHA256
variant only, and also warning that the password database stores the
passwords in clear text.

Reviewed-by: Erik Skultety <eskultet@redhat.com>
Signed-off-by: Daniel P. Berrangé <berrange@redhat.com>
docs/auth.rst
src/remote/libvirtd.sasl