<div dir="ltr"><div><div><div>Hi,<br><br></div>I have a scenario where I will create password <span style="color:rgb(153,0,0)">HASH</span> = <span style="color:rgb(153,0,0)">SALT</span> + <span style="color:rgb(32,18,77)">STRING</span> and save <span style="color:rgb(153,0,0)">SALT</span> and resulted <span style="color:rgb(153,0,0)">HASH</span> only in DB.<br><br>I will transport random <span style="color:rgb(12,52,61)">STRING</span> value to my custom sip application as password.<br><br></div>Digest authentication is not comply with this requirement.<br><br>Is that any supported authentication mechanism that can fulfill this requirement.<br></div>or is there any more appropriate authentication mechanism by opensips/kamailio? <br><div><div><br></div><div>One of the objectives is in case DB will compromise, users passwords will not available because random <span style="color:rgb(12,52,61)">STRING will not store in DB.<br></span></div><div><br></div><div>Looking forward for suggestions and comments.<br><br clear="all"></div><div><div><div><div class="gmail_extra"><div><div class="gmail_signature"><div><font size="2"><span style="font-family:verdana,sans-serif"><span style="color:rgb(39,78,19)">--<br>regards,</span></span></font></div><font size="2"><span style="font-family:verdana,sans-serif"><span style="color:rgb(39,78,19)"><br>abdul basit<br></span></span></font></div></div>
</div></div></div></div></div></div>