Configuration Reference Home
OpenDJ - PBKDF2 Password Storage Scheme

PBKDF2 Password Storage Scheme

The PBKDF2 Password Storage Scheme provides a mechanism for encoding user passwords using the PBKDF2 message digest algorithm.

This scheme contains an implementation for the user password syntax, with a storage scheme name of "PBKDF2".

Parent Component

The PBKDF2 Password Storage Scheme component inherits from the Password Storage Scheme

Properties

A description of each property follows.


Basic Properties: Advanced Properties:
↓ enabled ↓ java-class
↓ pbkdf2-iterations

Basic Properties

enabled

Description
Indicates whether the Password Storage Scheme is enabled for use.
Default Value
None
Allowed Values
true
false
Multi-valued
No
Required
Yes
Admin Action Required
None
Advanced Property
No
Read-only
No

pbkdf2-iterations

Description
The number of algorithm iterations to make. NIST recommends at least 1000.
Default Value
10000
Allowed Values
An integer value. Lower value is 1.
Multi-valued
No
Required
No
Admin Action Required
None
Advanced Property
No
Read-only
No


Advanced Properties

java-class

Description
Specifies the fully-qualified name of the Java class that provides the PBKDF2 Password Storage Scheme implementation.
Default Value
org.opends.server.extensions.PBKDF2PasswordStorageScheme
Allowed Values
A java class that implements or extends the class(es) :
org.opends.server.api.PasswordStorageScheme
Multi-valued
No
Required
Yes
Admin Action Required
None
Advanced Property
Yes
Read-only
No