Browse Source

Merge pull request #102 from KiTTYsh/master

Use random_bytes() to generate IV where available (PHP 7.x)
pull/40/head
Appleman1234 7 years ago
committed by GitHub
parent
commit
7c8f857c3b
  1. 6
      inc/mod/auth.php

6
inc/mod/auth.php

@ -70,7 +70,11 @@ function test_password($password, $salt, $test) {
function generate_salt() {
// 128 bits of entropy
return strtr(base64_encode(mcrypt_create_iv(16, MCRYPT_DEV_URANDOM)), '+', '.');
if (function_exists('random_bytes')) {
return strtr(base64_encode(random_bytes(16)), '+', '.');
} else {
return strtr(base64_encode(mcrypt_create_iv(16, MCRYPT_DEV_URANDOM)), '+', '.');
}
}
function login($username, $password) {

Loading…
Cancel
Save