[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Cisco password implementation trubs: weakened strength?
- Subject: Cisco password implementation trubs: weakened strength?
- From: j at arpa.com (jamie rishaw)
- Date: Thu, 21 Mar 2013 05:10:36 -0500
- In-reply-to: <CABL6YZSA6-CE3naCLmFzK=SYF_TcwTn7hjH_+3VuKU5NzgESjA@mail.gmail.com>
- References: <CABL6YZSA6-CE3naCLmFzK=SYF_TcwTn7hjH_+3VuKU5NzgESjA@mail.gmail.com>
warning: I'm tired and this email is terse.
warning: for huge nerds only.
disclaimer: although I've worked with actual rocket scientists(hi Roger),
I'm. not one myself..nor am I a crypto mathnerd
apparently, Cisco is changing its password schemas.
old: pbkdf2 by 1k, salted
vs
New: (type 4) unsalted sha256
..
discuss.?
there is a cert and Cisco sa on this.. but I'm wondering if anyone has any
opinions, yea or nay.?
-j.