Hi,

given that crypt() hashes can nowadays be brute-forced on commodity
hardware (especially since the password length is limited to 8
characters), wouldn't it make sense for htpasswd to use something stronger
by default?

Cheers,
Stefan


Reply via email to