Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Bärbel
Participant

Getting rid of MD5 hashed passwords (local users, expert)

I see that even R81.10.10 uses MD5 hashes to store local users (in /etc/shadow) and for the expert password (in /pfrm2.0/config1/expert_pass_).

Is there a way to have a state-of-the-art hash algoritm?

I stumbled across this (again) while changing passwords to protect against CVE-2024-24919.

1 Reply
Amir_Erman
Employee
Employee

Thanks for bringing this up

I agree this is an item to be fixed

This is already in working; Planned to be resolved in the coming R81.10.15

Please stay tune on our mailing list, soon we start the EA program

Amir

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    Tue 18 Mar 2025 @ 09:30 AM (EET)

    CheckMates Live Greece

    Tue 25 Mar 2025 @ 12:00 PM (MDT)

    Salt Lake City: CPX 2025 Recap

    Tue 08 Apr 2025 @ 12:00 PM (MDT)

    Denver: CPX 2025 Recap
    CheckMates Events