←back to thread

32 points pregnenolone | 2 comments | | HN request time: 0s | source
1. silisili ◴[] No.45671868[source]
I feel like my biggest issue last time I implemented Argon2 was which settings to use. There are so many different opinions, people posting helpful but untrue info, etc that it gets a bit mind boggling on what to actually believe. I spent hours on it and still didn't really find a sane consensus. I'm sure it makes more sense to someone in the crypto space, but this has got to be easier for widespread adoption. Sane defaults, or 'here are 3 example groups of settings and when it's recommended.'

In the end I gave in and just used what Bitwarden uses. I figured they probably knew what they were doing more than I did.

replies(1): >>45673095 #
2. braiamp ◴[] No.45673095[source]
OWASP usually gives you sane defaults https://cheatsheetseries.owasp.org/cheatsheets/Password_Stor...