Florent Daigniere writes:

> On Thu, 2016-12-22 at 00:31 +0100, Arne Babenhauserheide wrote:
>> It would be great if you could doublecheck whether I missed anything
>> which would spill your private key. The current password has an
>> entropy
>> of 75 bits — is that enough?
>
> You are naive if you think that you can ask users to give you 75 bits
> they can remember but others can't guess.

Cleared up the source of this misunderstanding: The word password
implies that the user chooses it. That’s not the case (and in the code
it’s called "recovery secret").

Best wishes,
Arne
_______________________________________________
Devl mailing list
Devl@freenetproject.org
https://emu.freenetproject.org/cgi-bin/mailman/listinfo/devl

Reply via email to