2013/1/27, Jeffrey Walton <[email protected]>:
> Hi All,
>
> Is it possible to disable use of MD5? (I checked configure, and there
> does not appear to be a switch).
>
> MD5 is completely broken, and has no cryptographic value. Yet it
> appears to be used in cryptographic routines.

That can't possibly be done. The client sends MD5 password hashes to
the server, for example. If you disable MD5 when compiling the client,
what do you expect it to do? Send passwords in plaintext? Disable the
"attach to project" feature? Use a different hash algorithm, which no
BOINC server would accept?

-- 
Nicolás
_______________________________________________
boinc_dev mailing list
[email protected]
http://lists.ssl.berkeley.edu/mailman/listinfo/boinc_dev
To unsubscribe, visit the above URL and
(near bottom of page) enter your email address.

Reply via email to