Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 26 May 2018 09:55:40 -0400
From:      "Derek (freebsd lists)" <482254ac@razorfever.net>
To:        Mark Felder <feld@FreeBSD.org>, freebsd-security@freebsd.org
Subject:   Re: Default password hash, redux
Message-ID:  <25466979-05f6-9373-5064-94e866a20896@razorfever.net>
In-Reply-To: <1527111631.2205598.1382649664.0BF85F15@webmail.messagingengine.com>
References:  <1527111631.2205598.1382649664.0BF85F15@webmail.messagingengine.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On 18-05-23 05:40 PM, Mark Felder wrote:
> In light of this new article[2] I would like to rehash (pun intended) this conversation and also mention a bug report[3] we've been sitting on in some form for 12 years[4] with usable code that would make working with password hashing algorithms easier and the rounds configurable by the admin.
> 
> [3] https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=182518

I'd also like to add relevant reference to the public discussion 
regarding this patch:

https://lists.freebsd.org/pipermail/freebsd-security/2015-February/008175.html

(which also links to previous discussion on -current)

as some additional context at this time.

Derek



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?25466979-05f6-9373-5064-94e866a20896>