From owner-freebsd-security@freebsd.org Thu May 24 20:37:02 2018 Return-Path: Delivered-To: freebsd-security@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 77FEBEFD795 for ; Thu, 24 May 2018 20:37:02 +0000 (UTC) (envelope-from kaduk@mit.edu) Received: from dmz-mailsec-scanner-8.mit.edu (dmz-mailsec-scanner-8.mit.edu [18.7.68.37]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 12A3782BF0; Thu, 24 May 2018 20:37:01 +0000 (UTC) (envelope-from kaduk@mit.edu) X-AuditID: 12074425-287ff70000001eca-fc-5b07213ad5fe Received: from mailhub-auth-1.mit.edu ( [18.9.21.35]) (using TLS with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by dmz-mailsec-scanner-8.mit.edu (Symantec Messaging Gateway) with SMTP id 4C.4E.07882.A31270B5; Thu, 24 May 2018 16:31:55 -0400 (EDT) Received: from outgoing.mit.edu (OUTGOING-AUTH-1.MIT.EDU [18.9.28.11]) by mailhub-auth-1.mit.edu (8.13.8/8.9.2) with ESMTP id w4OKVrSX020530; Thu, 24 May 2018 16:31:54 -0400 Received: from kduck.kaduk.org (24-107-191-124.dhcp.stls.mo.charter.com [24.107.191.124]) (authenticated bits=56) (User authenticated as kaduk@ATHENA.MIT.EDU) by outgoing.mit.edu (8.13.8/8.12.4) with ESMTP id w4OKVoA9003038 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NOT); Thu, 24 May 2018 16:31:52 -0400 Date: Thu, 24 May 2018 15:31:50 -0500 From: Benjamin Kaduk To: freebsd-security@freebsd.org Subject: Re: Default password hash, redux Message-ID: <20180524203149.GO32807@kduck.kaduk.org> References: <1527111631.2205598.1382649664.0BF85F15@webmail.messagingengine.com> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: User-Agent: Mutt/1.9.1 (2017-09-22) X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFnrKIsWRmVeSWpSXmKPExsUixCmqrGutyB5tsGAps8WuvoVsFj2bnrA5 MHnM+DSfJYAxissmJTUnsyy1SN8ugStj/cnTLAWXGCu23H/E1MC4grGLkYNDQsBE4vZezy5G Lg4hgcVMEtP7zzJDOBsZJXY3vWWCcK4yScxa0s0E0sEioCrR/7O+i5GTg01ARaKh+zIziC0i oCDR9ekHO4jNLKAkcW/fCTYQW1hAU+LMpAlgNi/QstOXW9kgZk5nlDg5axUjREJQ4uTMJywQ zVoSN/69BNvFLCAtsfwfB0iYUyBQ4mXLM7ASUQFlib19h9gnMArMQtI9C0n3LITuBYzMqxhl U3KrdHMTM3OKU5N1i5MT8/JSi3Qt9HIzS/RSU0o3MYJCk91FdQfjnL9ehxgFOBiVeHg3HGCL FmJNLCuuzD3EKMnBpCTKu/YfUIgvKT+lMiOxOCO+qDQntfgQowQHs5IIb/cvoBxvSmJlVWpR PkxKmoNFSZw3ZxFjtJBAemJJanZqakFqEUxWhoNDSYI3Q4E9WkiwKDU9tSItM6cEIc3EwQky nAdo+GN5oBre4oLE3OLMdIj8KUZFKXFefpBmAZBERmkeXC8odUhk7695xSgO9Iow7y+Qdh5g 2oHrfgU0mAlo8MXlzCCDSxIRUlINjEJ8zDP2TqlstPnX5b6hsVlAxo2pcPKMFte64+pfumfM 2WT4t/LuhFu+P56IlrcuaEzrOM6o+nTbnS0LX/cdiSm3EeTzfb6h9b/qzIv3Eq8XsR17b+5s lcRkuVm0tczMPeRLzlaes6ft/2/gZz6orBKRISK5N2CN0T+/t/5neHwL5uqxP3/ersRSnJFo qMVcVJwIANg71/34AgAA X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.26 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 24 May 2018 20:37:02 -0000 On Wed, May 23, 2018 at 05:50:04PM -0400, Yonas Yanfa wrote: > I recommend adding support for Argon2. > > https://en.wikipedia.org/wiki/Argon2 Yes, Argon2 seems like a no-brainer at this point. -Ben