how long should a password be?

Faramir faramir.cl at gmail.com
Tue May 6 04:58:51 CEST 2008


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
 
> Werner Koch escribió:
> On Mon,  5 May 2008 14:18, apple at royds.net said:
>
>> So there are only 64 bits in an 8 character password, which can be
>> cracked quite quickly using rainbow tables for any password.
>
> That is unlikely to work because gpg uses a random 64 bit salt as well
> as extended hashing.
>
>
> Salam-Shalom,
>
>    Werner
   I never knew how does salt work, but I am not sure if I should ask
here, or in the PGP-Basics list...
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org
 
iQEcBAEBAgAGBQJIH8lqAAoJEIISGkVDGUEOfJoH/1XDCET6NNzs60R722oXqthY
IwPPJf0MU4UFeHDrCpeAtME/CEPQCoZRNVMujalbkAOOf5CW6K8XBg4/imVN/qYv
qOyfdEIDkfPoLTkaa2voEVHHYhUkM+z4dTVEPQUO+Ix+oIAvlAuu1d0HuGnNu7/w
LVJjkrEhhTiU/JbJ2zbkEghIwRYmW0IBbJQxRd/aotkSd6YQ6tpCK2CkxcTD6wcb
9wh3eB9t+eK+OlsKudV84AboelhSPhMWLmxnSbCJ3nx6d2TgzcfroRGM97FV4ZmQ
sFoJpw7T+LFxM8RlCcigXTQN87+wzJKiSxM7ngX2vAy/R4ei6+/WRSXHp92lsj8=
=jwCx
-----END PGP SIGNATURE-----




More information about the Gnupg-users mailing list