DBI password hash list is too restrictive
In Lemonldap/NG/Portal/Lib/DBI.pm, we restrict hash scheme :
if ( $hash =~ /^(md5|sha|sha1|encrypt)$/i ) {
$self->logger->debug( "Using " . uc($hash) . " to hash password" );
return uc($hash) . "($password)";
}
It prevents to use for example sha2
or even a custom method that would be declared on database side.
As the hash is done by the database itself, I don't see why we need to restrict the list on our side.