From e43f99d1a9997d51fa922bbb94225bbf4e73cb9d Mon Sep 17 00:00:00 2001 From: Frank Wiles Date: Fri, 20 Feb 2015 14:31:00 -0600 Subject: [PATCH] Fixed PBKDF2PasswordHasher comments to reflect reality. --- django/contrib/auth/hashers.py | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/django/contrib/auth/hashers.py b/django/contrib/auth/hashers.py index 59676f6562..9aac881643 100644 --- a/django/contrib/auth/hashers.py +++ b/django/contrib/auth/hashers.py @@ -221,7 +221,7 @@ class PBKDF2PasswordHasher(BasePasswordHasher): """ Secure password hashing using the PBKDF2 algorithm (recommended) - Configured to use PBKDF2 + HMAC + SHA256 with 20000 iterations. + Configured to use PBKDF2 + HMAC + SHA256 with 24000 iterations. The result is a 64 byte binary string. Iterations may be changed safely but you must rename the algorithm if you change SHA256. """