View Issue Details
| ID | Project | Category | View Status | Date Submitted | Last Update |
|---|---|---|---|---|---|
| 0009171 | mantisbt | security | public | 2008-05-20 14:18 | 2009-07-01 06:27 |
| Reporter | jreese | Assigned To | vboctor | ||
| Priority | normal | Severity | feature | Reproducibility | N/A |
| Status | closed | Resolution | duplicate | ||
| Summary | 0009171: Implement secure/salted hashing algorithm for passwords | ||||
| Description | For 1.2.x, Mantis should upgrade the authentication system to use SHA1 or better hashing for passwords, with a randomized salt for each user's hash. Login-time rehashing of user's passwords should be supported to accommodate old user accounts. | ||||
| Tags | No tags attached. | ||||