From 5fc3ee4b77a6495a3544ce3192e71af0a9d74e08 Mon Sep 17 00:00:00 2001 From: "Dr. Stephen Henson" Date: Fri, 4 Mar 2016 23:28:45 +0000 Subject: use saner default parameters for scrypt Thanks to Colin Percival for reporting this issue. Reviewed-by: Rich Salz --- doc/apps/pkcs8.pod | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'doc/apps/pkcs8.pod') diff --git a/doc/apps/pkcs8.pod b/doc/apps/pkcs8.pod index ec9f1d1..f3b20ff 100644 --- a/doc/apps/pkcs8.pod +++ b/doc/apps/pkcs8.pod @@ -156,7 +156,7 @@ for all available algorithms. =item B<-scrypt> uses the B algorithm for private key encryption using default -parameters: currently N=1024, r=8 and p=16 and AES in CBC mode with a 256 bit +parameters: currently N=16384, r=8 and p=1 and AES in CBC mode with a 256 bit key. These parameters can be modified using the B<-scrypt_N>, B<-scrypt_r>, B<-scrypt_p> and B<-v2> options. -- cgit v1.1