summaryrefslogtreecommitdiff
path: root/usr.sbin
diff options
context:
space:
mode:
authorDarren Tucker <dtucker@cvs.openbsd.org>2018-04-13 03:57:27 +0000
committerDarren Tucker <dtucker@cvs.openbsd.org>2018-04-13 03:57:27 +0000
commit8adbf9e98a5b65138571bedc1198e1eca804ed21 (patch)
treeb72459ef0606405bd4382033877fad1c79d25bcb /usr.sbin
parent24fb6166b97816f05ec45586882e78a881b9ffbd (diff)
Defend against user enumeration timing attacks.
This establishes a minimum time for each failed authentication attempt (5ms) and adds a per-user constant derived from a host secret (0-4ms). Based on work by joona.kannisto at tut.fi, ok markus@ djm@.
Diffstat (limited to 'usr.sbin')
0 files changed, 0 insertions, 0 deletions