mirror of
https://github.com/django/django.git
synced 2025-08-10 05:48:15 +00:00
parent
04beab3399
commit
0b57016ec7
1 changed files with 1 additions and 1 deletions
|
@ -113,7 +113,7 @@ algorithm.
|
|||
that ``bcrypt(password_with_100_chars) == bcrypt(password_with_100_chars[:72])``.
|
||||
The original ``BCryptPasswordHasher`` does not have any special handling and
|
||||
thus is also subject to this hidden password length limit.
|
||||
``BCryptSHA256PasswordHasher`` fixes this by first first hashing the
|
||||
``BCryptSHA256PasswordHasher`` fixes this by first hashing the
|
||||
password using sha256. This prevents the password truncation and so should
|
||||
be preferred over the ``BCryptPasswordHasher``. The practical ramification
|
||||
of this truncation is pretty marginal as the average user does not have a
|
||||
|
|
Loading…
Add table
Add a link
Reference in a new issue