AW: [Issue 4145] Master passphrase and encrypted credentials cache
From: Markus Schaber <m.schaber_at_3s-software.com>
Date: Tue, 27 Mar 2012 16:45:35 +0000
Von: Greg Stein [mailto:gstein_at_gmail.com]
Sorry, I never wanted to patronize anyone.
It seems I just had seen too much do-it-yourself "crypto" so all alarm bells start ringing when someone talks about implementing something in that area, instead of using a proven existing solution.
> > but AFAICS, this design does not prevent the offline dictionary attacks mentioned by Greg Hudson.
That's a good point.
-- ___________________________ We software Automation. 3S-Smart Software Solutions GmbH Markus Schaber | Developer Memminger Str. 151 | 87439 Kempten | Germany | Tel. +49-831-54031-0 | Fax +49-831-54031-50 Email: email@example.com | Web: http://www.3s-software.com CoDeSys internet forum: http://forum.3s-software.com Download CoDeSys sample projects: http://www.3s-software.com/index.shtml?sample_projects Managing Directors: Dipl.Inf. Dieter Hess, Dipl.Inf. Manfred Werner | Trade register: Kempten HRB 6186 | Tax ID No.: DE 167014915Received on 2012-03-27 18:46:17 CEST
This is an archived mail posted to the Subversion Dev mailing list.