The warning "Password truncation with BCryptPasswordHasher" on
https://docs.djangoproject.com/en/2.0/topics/auth/passwords/#using-bcrypt-
with-django is incorrect. BCrypt truncates on ''bytes'' not
''characters''. For ASCII passwords that's 72 characters, but for Unicode
passwords, this can be as short as 18 characters.
--
Ticket URL: <https://code.djangoproject.com/ticket/29141>
Django <https://code.djangoproject.com/>
The Web framework for perfectionists with deadlines.
* has_patch: 0 => 1
Comment:
[https://github.com/django/django/pull/9706 PR]
--
Ticket URL: <https://code.djangoproject.com/ticket/29141#comment:1>
* needs_docs: 1 => 0
--
Ticket URL: <https://code.djangoproject.com/ticket/29141#comment:2>
* status: assigned => closed
* resolution: => fixed
Comment:
In [changeset:"56a302f338761cdda3cc1116a89687051c7c005a" 56a302f]:
{{{
#!CommitTicketReference repository=""
revision="56a302f338761cdda3cc1116a89687051c7c005a"
Fixed #29141 -- Corrected BCryptPasswordHasher's docstring about
truncation.
}}}
--
Ticket URL: <https://code.djangoproject.com/ticket/29141#comment:3>