Age | Commit message (Collapse) | Author |
|
|
|
|
|
We have a session in the server already - duplication there now, merge next
|
|
|
|
also u does not depend on n
|
|
We still calculate M differently than in SRP 6a
|
|
Some other parts are still missing. Main issue was using hashes of hex representation rather that hashes of byte arrays
|
|
|
|
|
|
all large integers are now send as hex strings.
Using sha256_str all over the place.
This finally gives me successful logins. Needs a log of cleanup never the less.
|
|
Also we currently generate the salt on the server - this should happen on the client but for now i stick to the srp-js workflow.
|
|
* needs a bit of cleanup from the old workflow
* are client and server using the same primes right now?
* store multiple users on the server side
|
|
* This is lacking a few steps. We confirm the secret is the same but no key is generated from it and it is transfered over the wire in clear.
* this was inspired by https://gist.github.com/790048
* seperated util, client, server and test code
|