Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 17 Feb 1997 16:44:49 -0700 (MST)
From:      Brandon Gillespie <brandon@cold.org>
To:        security@freebsd.org
Subject:   Re: blowfish passwords in FreeBSD
Message-ID:  <Pine.NEB.3.95.970217164255.13616A-100000@cold.org>
In-Reply-To: <199702172225.XAA21874@ocean.campus.luth.se>

next in thread | previous in thread | raw e-mail | index | archive | help
> That would be GREAT! If nothing else, when you choose DES, just pop up a
> requester and say "Are you within the USA?  (Yes/No/Cancel)" and default
> it to cancel. I for one haven't bothered to install DES because it seems
> too much of a hassle. If you could just say "No, I'm not from the USA" and
> have sysinstall try a few Non-US sites and get the DES if you tried to
> install from a site called .edu/.us or .org/.com known to be US, or so.
> I dunno. Something at least. Something the user basically just have to say
> "No, I'm not from the USA" to, and it would do the rest. Period.
> Jordan? :-)

I think also that people should be more educated on why they should want
DES.  I personally picked DES initially because it was something I
recognized, and I had no idea what FreeBSD did without it (I didn't
realize MD5 was just used instead--and soon SHA-1).  Perhaps explaining
that the ONLY REASON you would really even want DES is when either using
network services that assumes it, with other boxes (i.e. yp) or when
upgrading an old DES based box.  SHA-1 is much MUCH better.

-Brandon Gillespie




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.NEB.3.95.970217164255.13616A-100000>