Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

ykpamcfg uses bare minimum (weak?) PBKDF2 iteration count #245

Open
peter021 opened this issue Dec 17, 2022 · 0 comments
Open

ykpamcfg uses bare minimum (weak?) PBKDF2 iteration count #245

peter021 opened this issue Dec 17, 2022 · 0 comments

Comments

@peter021
Copy link

Yes, NIST says the iterations count should be "at least 10 000 iterations" but today many computers are faster and PBKDF2 i vulnerable (right word?) to adversaries using optimized hardware. "ykpamcfg" should use a random iterations count for each run that falls somewhere between 50 000 and 200 000 iterations.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Development

No branches or pull requests

1 participant