Re: portable WoT IDs recoverable with a random password, implemented in pyFreenet

Arne Babenhauserheide <arne_bab-S0/[email protected]>
Newsgroups gmane.network.freenet.devel
Message-ID <[email protected]>
Florent Daigniere writes:

> On Thu, 2016-12-22 at 00:31 +0100, Arne Babenhauserheide wrote:
>> It would be great if you could doublecheck whether I missed anything
>> which would spill your private key. The current password has an
>> entropy
>> of 75 bits — is that enough?
>
> You are naive if you think that you can ask users to give you 75 bits
> they can remember but others can't guess.

Cleared up the source of this misunderstanding: The word password
implies that the user chooses it. That’s not the case (and in the code
it’s called "recovery secret").

Best wishes,
Arne
_______________________________________________
Devl mailing list
[email protected]
https://emu.freenetproject.org/cgi-bin/mailman/listinfo/devl
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.