Increase SCRAM iteration count

XMLWordPrintableJSON

    • Type: Improvement
    • Resolution: Unresolved
    • Priority: Major - P3
    • None
    • Affects Version/s: 3.2.5
    • Component/s: Security
    • None
    • Server Security
    • None
    • None
    • None
    • None
    • None
    • None
    • None

      As CPU processing power goes up so should our default SCRAM iteration count. The new SCRAM-SHA-2 RFC recommends 15k iterations so we should increase it to at least that.

      Note that the authentication delay could be substantial for slow machines.

            Assignee:
            [DO NOT USE] Backlog - Security Team
            Reporter:
            Andreas Nilsson (Inactive)
            Votes:
            0 Vote for this issue
            Watchers:
            12 Start watching this issue

              Created:
              Updated: