[[Security]]
 

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

security [2011/09/13 08:41]
dblume
security [2015/11/08 17:00] (current)
dblume
Line 1: Line 1:
-===== Security =====+====== Security ====== 
 + 
 +===== Google ===== 
 + 
 +Quick links in case you need to verify things: 
 + 
 +  * [[https://myaccount.google.com/security?pli=1|Security Home]] 
 +  * [[https://security.google.com/settings/security/permissions|Connected Apps]] 
 +  * [[https://security.google.com/settings/security/apppasswords|One time app passwords]] 
 + 
 +===== General Security =====
  
 [[http://www.shamusyoung.com/twentysidedtale/?p=11523|Shamus attempts to explain hashing]] then [[http://codahale.com/how-to-safely-store-a-password/|Use bcrypt to store passwords]].  [[http://www.shamusyoung.com/twentysidedtale/?p=11523|Shamus attempts to explain hashing]] then [[http://codahale.com/how-to-safely-store-a-password/|Use bcrypt to store passwords]]. 
Line 48: Line 58:
 Never use passwords whose unsalted MD5 hash can be looked up here: [[http://md5.gromweb.com/]] Never use passwords whose unsalted MD5 hash can be looked up here: [[http://md5.gromweb.com/]]
  
-[[http://eli.thegreenplace.net/2010/06/25/aes-encryption-of-files-in-python-with-pycrypto/|AES encryption of files in Python with PyCrypto]] pycrypto-2.3 can be built with the same ''c:\Python27\python.exe setup.py build'' mechanism.+[[http://eli.thegreenplace.net/2010/06/25/aes-encryption-of-files-in-python-with-pycrypto/|AES encryption of files in Python with PyCrypto]]. Note that pycrypto-2.3 can be built with the same ''c:\Python27\python.exe setup.py build'' mechanism.
  
 Someone suggested [[wp>Whirlpool_(cryptography)]], it's offered in [[http://labix.org/python-mhash|mhash]], and a pure-python implementation from Bjorn Edstrom <be@bjrn.se> 16 december 2007 is here [[http://www.bjrn.se/code/whirlpoolpy.txt]]. Someone suggested [[wp>Whirlpool_(cryptography)]], it's offered in [[http://labix.org/python-mhash|mhash]], and a pure-python implementation from Bjorn Edstrom <be@bjrn.se> 16 december 2007 is here [[http://www.bjrn.se/code/whirlpoolpy.txt]].
  
-**Keywords**: crypt+==== Verification ==== 
 + 
 +Maybe I should try to automate a way to verify the SHA1 Checksums of PGP signatures and upon success, verify the PHP signatures.  Here's an old recipe: [[http://dannyman.toldme.com/2007/03/30/howto-verify-pgp-signature/|HOWTO: Verify a PGP Signature]]. 
 + 
 +**Keywords**: crypt, cryptography pgp sha
security.1315928501.txt.gz · Last modified: 2012/01/27 00:15 (external edit)
 
Recent changes RSS feed Driven by DokuWiki