|
|
|
|
|
by tptacek
5477 days ago
|
|
No there isn't. You only think that because when geeks discuss anything that involves one or more knobs, a huge debate must necessarily ensue about the proper values of those knobs. Just use the bcrypt defaults. You will be fine. You will in particular be so much better off than salted SHA-1 that this topic will be mooted. Later on, maybe in 5-10 years, you can re-engage with the debate about what a good cost factor for bcrypt will be in 2020. |
|
So now people are twitchy about "just use the defaults", especially when it comes to something they don't really understand, like cryptography.