Subject: Re: PROPOSAL: adding capability for blowfish passwords
To: Steven M. Bellovin <smb@research.att.com>
From: None <itojun@iijlab.net>
List: current-users
Date: 05/23/2002 23:21:17
>In my opinion, there's no technical reason to do it. If you want to
>add a new scheme, SHA512 would be a much better choice. The only
>reason I can see is password file compatibility with OpenBSD.
did you check USENIX paper on openbsd $2$ password? i'm guessing
you did, and am wondering why you reject their reasoning. are there
any flaws in their logic?
itojun