Improve the token storage format
shortcomings of the previous format included: - 1000x slower than it should be (no point in adding rounds since there is enough entropy: they are not bruteforceable) - vulnerable to DoS as explained in https://passlib.readthedocs.io/en/stable/lib/passlib.hash.sha256_crypt.html#security-issuesmaster
parent
eb7895bd1c
commit
00b001f76b
Loading…
Reference in New Issue