##// END OF EJS Templates
security: limit the maximum password lenght to 72 characters to prevent possible...
security: limit the maximum password lenght to 72 characters to prevent possible server side resource consumption attack. - bcrypt heavy computation can lead to DOS using a very long password .eg 10**8 lenght. - we allowed this on registration or on password update
ergo -
r2128:f22a9ea9 default
Show More
Name Size Modified Last Commit Author
/ docs / auth
auth.rst Loading ...
crowd-auth.rst Loading ...
ldap-active-directory.rst Loading ...
ldap-authentication.rst Loading ...
ldap-config-steps.rst Loading ...
ldap-configuration-example.rst Loading ...
pam-auth.rst Loading ...
ssh-connection.rst Loading ...
token-auth.rst Loading ...