• Maestro@fedia.io
    link
    fedilink
    arrow-up
    0
    ·
    4 months ago

    Yes. Current best practice is to use pass phrases. They can get long. Also, salt length is added to the password length as well, depending on implementation.

    • Phen@lemmy.eco.br
      link
      fedilink
      arrow-up
      0
      ·
      4 months ago

      Imagine getting a multi byte character at the right position to get it split so that one byte gets in and the other doesn’t.

      • Maestro@fedia.io
        link
        fedilink
        arrow-up
        0
        ·
        4 months ago

        It doesn’t matter. That will happen for both the stored hash and the entered password, so it still matches.