Skip to content

api: hash passwords with bcrypt directly, drop passlib - #723

Open
Hao-Chen2337 wants to merge 1 commit into
kernelci:mainfrom
Hao-Chen2337:fix/drop-passlib
Open

Hao-Chen2337 wants to merge 1 commit into
kernelci:mainfrom
Hao-Chen2337:fix/drop-passlib

Conversation

@Hao-Chen2337

Copy link
Copy Markdown

Fixes #597.

passlib 1.7.4 is unmaintained and can't handle bcrypt 5.0.0, so
get_password_hash() raises ValueError. This drops passlib and hashes
with bcrypt.hashpw() directly instead.

passlib 1.7.4 reads bcrypt internals removed in bcrypt 5.0.0, so
get_password_hash() raises ValueError. Use bcrypt.hashpw() directly
and pin bcrypt; passlib is unused everywhere else.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

password creation: non-fatal bcript error output

1 participant