I got a patch commited back in November for apr_password_validate() in
APR-Util to support SHA1 Passwords. It should go into the next 2.0.XX
release of Apache. This is just more of a note that we should remove
our AprSHA1 Directive in the future.
-chip