Is it possible to get stronger password hashing without rebuilding OpenWRT?
After noticing that password hashing in /etc/shadow
was only md5-based, I installed shadow-passwd
to get that luscious bcrypt support.
I then happily changed my password, only to discover that I could not login as that user anymore. Changed the hash back to md5 (begins with $1$
) and I can login again.
Hoping there is just a package I neglected to install...