Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It's written with constant memory allocation in mind. Silly of them to use such a small buffer though, make it a configuration option.


No, it's due to the construction of bcrypt - it ends up using the password more or less directly as the key for blowfish (the underlying cipher) which is why the limit is there. Check wikipedia for details.


I assumed all hashes are in O(1) space? Is there any that’s not?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: