From 50a8de2792648301fff77c26ecd4cbda48c58421 Mon Sep 17 00:00:00 2001 From: jesopo Date: Wed, 6 Feb 2019 22:28:50 +0000 Subject: Restrict scram algorithms to IANA Hash Function Textual Names (sasl.scram) --- modules/sasl/__init__.py | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'modules/sasl/__init__.py') diff --git a/modules/sasl/__init__.py b/modules/sasl/__init__.py index 40604c38..67126155 100644 --- a/modules/sasl/__init__.py +++ b/modules/sasl/__init__.py @@ -70,7 +70,7 @@ class Module(ModuleManager.BaseModule): # create SCRAM helper sasl_username, sasl_password = sasl["args"].split(":", 1) - algo = mechanism.split("SCRAM-", 1)[1].replace("-", "") + algo = mechanism.split("SCRAM-", 1)[1] event["server"]._scram = scram.SCRAM( algo, sasl_username, sasl_password) -- cgit v1.3.1-10-gc9f91