Consider changing default encoder in PasswordEncoderFactories #16879
Labels
for: team-attention
This ticket should be discussed as a team before proceeding
type: enhancement
A general enhancement
Milestone
The default
PasswordEncoder
inPasswordEncoderFactories
isBCryptPasswordEncoder
.We should consider changing the default to another
PasswordEncoder
based on the recommendations in OWASP Password Storage Cheat Sheet.The text was updated successfully, but these errors were encountered: