From 5fc3ee4b77a6495a3544ce3192e71af0a9d74e08 Mon Sep 17 00:00:00 2001 From: "Dr. Stephen Henson" Date: Fri, 4 Mar 2016 23:28:45 +0000 Subject: use saner default parameters for scrypt Thanks to Colin Percival for reporting this issue. Reviewed-by: Rich Salz --- apps/pkcs8.c | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) (limited to 'apps/pkcs8.c') diff --git a/apps/pkcs8.c b/apps/pkcs8.c index 125bf6158a..0968fef946 100644 --- a/apps/pkcs8.c +++ b/apps/pkcs8.c @@ -203,9 +203,9 @@ int pkcs8_main(int argc, char **argv) break; #ifndef OPENSSL_NO_SCRYPT case OPT_SCRYPT: - scrypt_N = 1024; + scrypt_N = 16384; scrypt_r = 8; - scrypt_p = 16; + scrypt_p = 1; if (cipher == NULL) cipher = EVP_aes_256_cbc(); break; -- cgit v1.2.3