From 66e4d0829d919d575bf23d5b6bb76e69bde0c3c8 Mon Sep 17 00:00:00 2001 From: Rose Hogenson Date: Sun, 7 Dec 2025 14:46:56 -0800 Subject: Increase target security to 32 bytes --- internal/pwhash/pwhash.go | 18 ++++++++++++++++++ 1 file changed, 18 insertions(+) create mode 100644 internal/pwhash/pwhash.go (limited to 'internal/pwhash/pwhash.go') diff --git a/internal/pwhash/pwhash.go b/internal/pwhash/pwhash.go new file mode 100644 index 0000000..22b5368 --- /dev/null +++ b/internal/pwhash/pwhash.go @@ -0,0 +1,18 @@ +package pwhash + +import ( + "crypto/pbkdf2" + "crypto/sha512" +) + +const SaltSize = 8 + +const defaultIter = 12500992 // from tools/finditer + +func HashIter(password string, salt []byte, iter int) ([]byte, error) { + return pbkdf2.Key(sha512.New, password, salt, iter, 32) +} + +func Hash(password string, salt []byte) ([]byte, error) { + return HashIter(password, salt, defaultIter) +} -- cgit v1.3.1