- CheckMates
- :
- Products
- :
- Quantum
- :
- SMB Gateways (Spark)
- :
- Getting rid of MD5 hashed passwords (local users, ...
Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×
Sign in with your Check Point UserCenter/PartnerMap account to access more great content and get a chance to win some Apple AirPods! If you don't have an account, create one now for free!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Getting rid of MD5 hashed passwords (local users, expert)
I see that even R81.10.10 uses MD5 hashes to store local users (in /etc/shadow) and for the expert password (in /pfrm2.0/config1/expert_pass_).
Is there a way to have a state-of-the-art hash algoritm?
I stumbled across this (again) while changing passwords to protect against CVE-2024-24919.
1 Reply
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Thanks for bringing this up
I agree this is an item to be fixed
This is already in working; Planned to be resolved in the coming R81.10.15
Please stay tune on our mailing list, soon we start the EA program
Amir
