Re: Default password hash

2012-06-11 Thread Dag-Erling Smørgrav
"O. Hartmann" writes: > You should also file a PR for change-requets, so it is not only in the > email list. I have no idea what you mean by that... DES -- Dag-Erling Smørgrav - d...@des.no ___ freebsd-current@freebsd.org mailing list http://lists.fre

Re: Default password hash

2012-06-09 Thread O. Hartmann
On 06/09/12 11:28, Dimitry Andric wrote: > On 2012-06-09 09:43, O. Hartmann wrote: >> On 06/08/12 14:51, Dag-Erling Smørgrav wrote: >>> We still have MD5 as our default password hash, even though known-hash >>> attacks against MD5 are relatively easy these days. We&

Re: Default password hash

2012-06-09 Thread Dimitry Andric
On 2012-06-09 09:43, O. Hartmann wrote: > On 06/08/12 14:51, Dag-Erling Smørgrav wrote: >> We still have MD5 as our default password hash, even though known-hash >> attacks against MD5 are relatively easy these days. We've supported >> SHA256 and SHA512 for many year

Re: Default password hash

2012-06-09 Thread O. Hartmann
On 06/08/12 14:51, Dag-Erling Smørgrav wrote: > We still have MD5 as our default password hash, even though known-hash > attacks against MD5 are relatively easy these days. We've supported > SHA256 and SHA512 for many years now, so how about making SHA512 the > default instea