diff options
author | Darren Tucker <dtucker@cvs.openbsd.org> | 2015-05-15 05:44:22 +0000 |
---|---|---|
committer | Darren Tucker <dtucker@cvs.openbsd.org> | 2015-05-15 05:44:22 +0000 |
commit | 6eb608c1348ca654b1fe4e1c4cbdd390562f1e95 (patch) | |
tree | a3e3103f1cf588e31b200abe627cb8c8a3f443bb /usr.bin/cu/cu.h | |
parent | f49e632c02b8b98b0a8dd36946c88a7de2e3fd48 (diff) |
Use a salted hash of the lock passphrase instead of plain text and do
constant-time comparisons of it. Should prevent leaking any information about
it via timing, pointed out by Ryan Castellucci. Add a 0.1s incrementing delay
for each failed unlock attempt up to 10s. ok markus@ (earlier version), djm@
Diffstat (limited to 'usr.bin/cu/cu.h')
0 files changed, 0 insertions, 0 deletions