•  
      request #42196 Migrate to Argon2id to store password
    Infos
    #42196
    Thomas Gerbet (tgerbet)
    2025-03-11 16:28
    2025-03-07 10:59
    43864
    Details
    Migrate to Argon2id to store password

    Tuleap is currently using bcrypt which is still fine and adequate however the 72 bytes limit can be a source of issue. It is possible to disable this footgun I would prefer to avoid introducing a custom hash construction so migrating to Argon2id is easier.

    Other
    All
    Empty
    • [ ] enhancement
    • [ ] internal improvement
    Empty
    Stage
    Thomas Gerbet (tgerbet)
    Closed
    2025-03-11
    Attachments
    Empty
    References

    Follow-ups