CA Directory: Which Secure Hashing Algorithm (SHA) is supported by PBDKF2?

Document ID:  TEC1089359
Last Modified Date:  06/14/2017
Technical Document Details


  • CA Directory


  • CA Directory:Release:12.0
  • CA Directory:Release:12.5
  • CA Directory:Release:12.6


  • CA Directory:ETRDIR

CA Directory supports password hashing using the PBKDF2 (Password-Based Key Derivation Function 2) method.


Which Secure Hashing Algorithm (SHA) is supported by PBKDF2 ?


CA Directory uses only HMAC with SHA1 for PBKDF2. This password derivation function (PBKCS5_PBKDF2_HMAC_SHA1) is provided by OpenSSL.

The implementation follows RFC 2898.

