svn commit: r237269 - in head: etc lib/libutil

Alexey Dokuchaev danfe at FreeBSD.org
Tue Jun 19 16:13:20 UTC 2012


On Tue, Jun 19, 2012 at 02:46:19PM +0000, Dag-Erling Smorgrav wrote:
> Author: des
> Date: Tue Jun 19 14:46:18 2012
> New Revision: 237269
> URL: http://svn.freebsd.org/changeset/base/237269
> 
> Log:
>   Switch the default password hash from md5 to sha512.

Pardon my possible unawareness, but was this change discussed anywhere?
I understand the rationale to move away from MD5, but reasons for SHA512
seem moot.  I've personally had been using Blowfish for password hashes
since OpenBSD switched to it, for example, as fast and apparently reliable
hash.  Is there anything wrong with it?  Why SHA512 is clear winner here?
FWIW, ports use SHA256 for now.  Could it be that switch to SHA512 will
impose perfomance problems?

./danfe


More information about the svn-src-all mailing list