summaryrefslogtreecommitdiffstats
path: root/lib
diff options
context:
space:
mode:
authordtucker <dtucker@openbsd.org>2015-05-15 05:44:21 +0000
committerdtucker <dtucker@openbsd.org>2015-05-15 05:44:21 +0000
commitcb653e3c059f989c4546fd1f4813ae2592d38680 (patch)
treeda4b60779a07acf1f7d7331d0f991142e1f1a710 /lib
parentUse STRONG_ALIAS instead of ALTENTRY. (diff)
downloadwireguard-openbsd-cb653e3c059f989c4546fd1f4813ae2592d38680.tar.xz
wireguard-openbsd-cb653e3c059f989c4546fd1f4813ae2592d38680.zip
Use a salted hash of the lock passphrase instead of plain text and do
constant-time comparisons of it. Should prevent leaking any information about it via timing, pointed out by Ryan Castellucci. Add a 0.1s incrementing delay for each failed unlock attempt up to 10s. ok markus@ (earlier version), djm@
Diffstat (limited to 'lib')
0 files changed, 0 insertions, 0 deletions