aboutsummaryrefslogtreecommitdiff
path: root/system/scrypt/README
diff options
context:
space:
mode:
Diffstat (limited to 'system/scrypt/README')
-rw-r--r--system/scrypt/README11
1 files changed, 11 insertions, 0 deletions
diff --git a/system/scrypt/README b/system/scrypt/README
new file mode 100644
index 000000000000..90be1eb4e0cd
--- /dev/null
+++ b/system/scrypt/README
@@ -0,0 +1,11 @@
+The scrypt key derivation function was originally developed for use in the
+Tarsnap online backup system and is designed to be far more secure against
+hardware brute-force attacks than alternative functions such as PBKDF2 or
+bcrypt.
+
+This simple password-based encryption utility is available as a demonstration
+of the scrypt key derivation function. On modern hardware and with default
+parameters, the cost of cracking the password on a file encrypted by scrypt
+enc is approximately 100 billion times more than the cost of cracking the same
+password on a file encrypted by openssl enc; this means that a five-character
+password using scrypt is stronger than a ten-character password using openssl.