[Freeipa-devel] [PATCH] 357 Added symmetric and asymmetric vaults.

Petr Spacek pspacek at redhat.com
Wed Nov 5 13:27:49 UTC 2014


On 5.11.2014 09:32, Martin Kosek wrote:
> On 11/05/2014 08:14 AM, Jan Cholasta wrote:
>> Hi,
>>
>> Dne 4.11.2014 v 17:54 Endi Sukma Dewata napsal(a):
>>> Hi,
>>>
>>> In this patch I'm adding ipaVaultSalt and ipaVaultPublicKey attribute
>>> types to store salt and public key for vault. Are there existing
>>> attribute types that I can use instead? I see there's an ipaPublicKey,
>>> should I use that and maybe add ipaSalt/ipaEncSalt? Thanks.
>>>
>>
>> yes, please re-use existing attributes where possible.
>>
>> Honza
>>
>
> +1. Also, if ipaSalt/ipaEncSalt is usable outside of Vault, I would go with it,
> instead of adding ipaVaultSalt.

Existing schema including ipaPublicKey attribute is described on:
http://www.freeipa.org/page/V4/PKCS11_in_LDAP/Schema

Please note that there are defined data formats too, not only OIDs.

-- 
Petr^2 Spacek




More information about the Freeipa-devel mailing list