View Issue Details
ID | Project | Category | View Status | Date Submitted | Last Update |
---|---|---|---|---|---|
0009171 | mantisbt | security | public | 2008-05-20 14:18 | 2009-07-01 06:27 |
Reporter | jreese | Assigned To | vboctor | ||
Priority | normal | Severity | feature | Reproducibility | N/A |
Status | closed | Resolution | duplicate | ||
Summary | 0009171: Implement secure/salted hashing algorithm for passwords | ||||
Description | For 1.2.x, Mantis should upgrade the authentication system to use SHA1 or better hashing for passwords, with a randomized salt for each user's hash. Login-time rehashing of user's passwords should be supported to accommodate old user accounts. | ||||
Tags | No tags attached. | ||||