Skip to content

Update Password Strength indicator's rating #8519

@Rex-0x7CB

Description

@Rex-0x7CB

Summary

Currently, Keepass-XC rates passwords as Poor (Entropy < 40 bits), Week (Entropy between 40 and 65 bits), Good (Entropy between 65 and 100 bits) and Excellent (Entropy > 100 bits). In my opinion this rating should be updated as the computing power has dramatically increased over the years.
National Security Agency (NSA) announced their plan and timelines to transition the industry to a post-quantum world with Commercial National Security Algorithm Suite 2.0. Interesting, they do not consider AES with key length 128-bit to be secure anymore. The minimum key-length requirement for AES is 256 bit.
I was wondering if we should update the password-strength indicator as, in its current state, it could be misleading in the coming years.

Context

[NOTE]: National Security Agency (NSA) announced their plan and timelines to transition the industry to a post-quantum world with Commercial National Security Algorithm Suite 2.0.

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions