Re: PHK's MD5 might not be slow enough anymore

[ Available lists | Index of freebsd-security | Month of Jan 2010 | Week of 28 Jan 2010 | Raw email | View thread | Wrap long lines | Reply | Tag ]
From
Xin LI <delphij@delphij.net>
Date
28 Jan 2010 21:09:30
Subject
Re: PHK's MD5 might not be slow enough anymore
Message-ID
4B61FCFF.6040207@delphij.net

In reply to

[ Hide this part ]
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 2010/01/28 12:18, Chris Palmer wrote:
> For backwards compatibility, which do people prefer: Creating a new $N$
> prefix every time we re-tune the algorithm, or using a new notation to say
> how many times this password was hashed? For example: $1.1000$, $1.100000$,
> et c.?

I'd vote for $1.nnnn$, as a good side effect it would be tunable by the
administrators who want to fine tune the round number as need.

Cheers,
- --
Xin LI <delphij@delphij.net> http://www.delphij.net/
FreeBSD - The Power to Serve! Live free or die
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.14 (FreeBSD)

iQEcBAEBAgAGBQJLYfz/AAoJEATO+BI/yjfBEXsIAIr2qzcNDVFDoZ2OWr6tAeZh
5Ew0LcrGKwMnbhwhn1lpOopJks/43JnX85YScPgpcCuDDyG8mev8kjwnuXpl0iOr
fTMTgznuzIkHT6DcPfQYc2jcaMjR3TzSy8bTFOilrnkuQr0kPHAiQNrnrUtAKyxz
Ss0JBjYboSVqtOG58fltkPB0XVoXwBSy8Y4eG+jwStn0qDPmASlZ1TaDvxQWkp9/
4X7zCK9NCQa/VH94VnbX4uFn3uiLH+IXrUISQcgd9QUkOrswSpdyjSGwV9xkQXWn
oiEQP0eVMPWWpesFjhcppSq+2gvsRRow8IpPUSgH2aZDVleZxe9/pEPyyl+bNCk=
=rEMy
-----END PGP SIGNATURE-----

Elapsed time: 0.167 seconds