Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Upgrade Password4j #80

Closed
firaja opened this issue Aug 1, 2023 · 1 comment
Closed

Upgrade Password4j #80

firaja opened this issue Aug 1, 2023 · 1 comment

Comments

@firaja
Copy link
Contributor

firaja commented Aug 1, 2023

Hello team,

creator of Password4j here.

I've created a PR to upgrade Password4j from 1.5.4 to 1.7.1 maintaining backward compatibility with the hashes produced so far.

In general it's better to always specify the parameters of Argon2 (or any other algorithm) in the code or in a properties file, like I did in my PR. In 1.6.1 the implicit configurations were changed in order to fit OWASP's minimum security requirements and without the properties file you would had inconsistencies.

Enjoy 🚀

@jonrosner
Copy link
Contributor

Thank you for upgrading!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants