[Zope3-dev] SHA1Password manager, add a pinch of salt

Gary Poster gary at zope.com
Mon Apr 23 12:22:59 EDT 2007


On Apr 23, 2007, at 12:03 PM, Giovannetti, Mark wrote:

> You make a point, although I would expect a reference
> implementation to be as good as possible.  Hence, improvements
> can be encouraged and, perhaps, the security bar raised.
> Adding this salt patch allows a better, more secure reference
> implementation.
>
> Surely, welcoming obvious improvements that will save some
> other zope developer from re-implementing a secure /etc/passwd
> equivalent is desirable.

+1

Gary



More information about the Zope3-dev mailing list