[keycloak-dev] argon2 password hashing

Roelof Naude roelof.naude at gmail.com
Mon Apr 25 10:02:18 EDT 2016


hi,

a client has requested the use of the argon2 [1, 2] password hashing
scheme. this can easily be added as an external provider. we do however
require custom password policies, e.g. memory / parallelism cost as well as
salt length. AFAIK there is no way to provide policy extensions using a
provider interface?

would argon2 be a worthwhile contribution?

regards
roelof.

[1] https://github.com/P-H-C/phc-winner-argon2
[2] https://github.com/phxql/argon2-jvm
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.jboss.org/pipermail/keycloak-dev/attachments/20160425/6769a415/attachment.html 


More information about the keycloak-dev mailing list