Re: Default password hash

From: O. Hartmann <ohartman_at_zedat.fu-berlin.de>
Date: Sat, 09 Jun 2012 12:11:40 +0200
On 06/09/12 11:28, Dimitry Andric wrote:
> On 2012-06-09 09:43, O. Hartmann wrote:
>> On 06/08/12 14:51, Dag-Erling Smørgrav wrote:
>>> We still have MD5 as our default password hash, even though known-hash
>>> attacks against MD5 are relatively easy these days.  We've supported
>>> SHA256 and SHA512 for many years now, so how about making SHA512 the
>>> default instead of MD5, like on most Linux distributions?
> ...
>> The manpage for login.conf also needs an update. I checked this morning
>> and found that thye manpage doesn't even mention hashes apart from des,
>> md5 and blf.
> 
> Dag-Erling fixed this just yesterday :)
> 
> http://svn.freebsd.org/changeset/base/236751

Great and thank you all ... :-)


Received on Sat Jun 09 2012 - 08:11:48 UTC

This archive was generated by hypermail 2.4.0 : Wed May 19 2021 - 11:40:27 UTC