Django 6.1 increases default password hashing iterations, affecting login speed
Django 6.1, released in August, increased the default PBKDF2 password hashing iteration count from 1.2 million to 1.5 million. This change increases CPU time for password verification by approximately 25%, adding 50-90 milliseconds per login. Benchmark tests confirmed the performance impact but showed the hashing process scales across multiple CPU cores. The framework automatically updates existing password hashes to the new standard when users next log in.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.

Discussion (0)
Log in to join the discussion and vote.
Log in