mirror of
https://github.com/django/django.git
synced 2025-10-24 14:16:09 +00:00
Fixed #35428 -- Increased parallelism of the ScryptPasswordHasher.
This commit is contained in:
@@ -46,6 +46,9 @@ Minor features
|
||||
* The default iteration count for the PBKDF2 password hasher is increased from
|
||||
720,000 to 870,000.
|
||||
|
||||
* In order to follow OWASP recommendations, the default ``parallelism`` of the
|
||||
``ScryptPasswordHasher`` is increased from 1 to 5.
|
||||
|
||||
* :class:`~django.contrib.auth.forms.BaseUserCreationForm` and
|
||||
:class:`~django.contrib.auth.forms.AdminPasswordChangeForm` now support
|
||||
disabling password-based authentication by setting an unusable password on
|
||||
|
||||
Reference in New Issue
Block a user