On Mon, Jul 25, 2011 at 3:36 PM, Benjamin Podszun < benjamin.pods...@gmail.com> wrote:
> On Mon, Jul 25, 2011 at 3:33 PM, Marius Mårnes Mathiesen < > marius.mathie...@gmail.com> wrote: > >> On Mon, Jul 25, 2011 at 10:42 AM, Stefan Hoth <goo...@stefanhoth.de>wrote: >> >>> iirc there is the possibility to add users via shell script. This might a >>> viable alternative and more fool-proof than going around the system. >> >> >> If you really want to know how the hashing is performed, use the source: >> https://gitorious.org/gitorious/mainline/blobs/master/app/models/user.rb#line150 >> > > Slightly off-topic: Being curious I followed the link. Any plans to move > away from SHA-1 in the (near) future? And to nothing but bcrypt/scrypt? > Sorry for the reply to myself, but this link [1] contains both a good description _why_ and _how_ (for ruby). Please don't take the title too serious.. 1: http://yorickpeterse.com/articles/use-bcrypt-fool/ -- To post to this group, send email to gitorious@googlegroups.com To unsubscribe from this group, send email to gitorious+unsubscr...@googlegroups.com