Join Slack
Communities
Powered by
hello, us it possible to configure kratos to use S...
# general
k
kind-receptionist-82950
08/01/2024, 7:46 AM
hello, us it possible to configure kratos to use SHA256 instead of SHA1 for TOTP?
i
icy-manchester-83109
08/05/2024, 6:08 AM
Hi. It is not possible. Corresponding options are not exposed in kratos config. Here (
https://github.com/ory/kratos/blob/4fb28b363622bb21ce12d9f89d2ceb4649aa0cba/selfservice/strategy/totp/generator.go#L33
) is the place, where the totp instantiation is done. Side note: Even it would be possible, some OTP Apps, like e.g. the one from google, do only support SHA1 and require the amount of OTP digits to be 6 (at least on Android).
7
Views
Open in Slack
Previous
Next