-
Notifications
You must be signed in to change notification settings - Fork 332
[Brig] Move password verification to the AuthenticationSubsystem, move to Argon2id with new settings. #4271
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Merged
Merged
Changes from all commits
Commits
Show all changes
30 commits
Select commit
Hold shift + click to select a range
0cd1e5e
Use Argon2id instead of scrypt, with default params.
elland f96f501
Added verifyPassword to subsystem
elland 0ee6927
Improved handling of pwds between bots and users.
elland 33ebee7
[brig] Use auth subsystem to verify pwds.
elland 4b22fc4
Adapt argon2id params.
elland f4ce01a
Adjusted params again, updated tests.
elland e8954ca
Fixed test.
elland cda7431
Added changelog.
elland 0c48e8d
Fixed bug with provider pwd.
elland 789bc9b
Increase tolerance for local user suspension in integration tests.
elland 7ba0b80
Use Scrypt for OAuth.
elland a4c3b96
[wip] Use scrypt in select places.
elland 6fc7577
Clean up pragma.
elland 1adaaca
Extract rabbit queue into own make cmd.
elland 47b0dcb
Updating provider pwd to argon.
elland cca6c0a
Restored argon for provider new acc.
elland dfc9fc0
Test using only Scrypt.
elland 0cd22c4
Renamed function, restored argon2id.
elland 7f7adab
Make argon2id hashing quicker.
elland b927f37
Make it even lighter.
elland 6455c8e
Fixed rebase issue.
elland 791eb35
Refactored Password, cleaning up code and exports.
elland 4b724e7
Fixed tests.
elland 004900e
Updated Scrypt params.
elland 7ef7275
Added importand TODO for tomorrow.
elland 481bbd1
Adjusted argon2 values, forced strictness on hashing.
elland 14f80e9
Cleanup + reduce memory usage of argon2id for now.
elland f4c4804
hi ci
elland 12f413d
lowered argon2id settings again.
elland 7c47c67
Adjusting values after running Kratos
elland File filter
Filter by extension
Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
There are no files selected for viewing
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| Original file line number | Diff line number | Diff line change |
|---|---|---|
| @@ -0,0 +1 @@ | ||
| Changed default password hashing from Scrypt to Argon2id. | ||
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Oops, something went wrong.
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Uh oh!
There was an error while loading. Please reload this page.