Project

General

Profile

Actions

Feature #36650

open

Change Linux password hashing default from sha256 to sha512

Added by Ewoud Kohl van Wijngaarden 10 months ago.

Status:
New
Priority:
Normal
Assignee:
-
Category:
Unattended installations
Target version:
-
Difficulty:
Triaged:
No
Fixed in Releases:
Found in Releases:

Description

https://wiki.archlinux.org/title/SHA_password_hashes states that NSA has recommended SHA512 since RHEL 5. This means it's safe to do with wide compatibility. It should be noted that Fedora 35 has started to default to YESCRYPT. See ENCRYPT_METHOD in /etc/login.defs and https://www.fedoraproject.org/wiki/Changes/yescrypt_as_default_hashing_method_for_shadow for more info.

No data to display

Actions

Also available in: Atom PDF