Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

What system are you thinking of? Which works with existing crypt(3) based system used on Unix?


If you are willing to tell anyone who connects your salt, you could, in principle, run a balanced PAKE using the crypt output.

You could go one step further and have the server store an augmented PAKE authenticator derived from the crypt(3) output.


Here's half an answer: Kerberos.

Which SSH does support, btw.




Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: