Passphrases using eggdrop's blowfish.mod
use Authen::Passphrase::EggdropBlowfish; $ppr = Authen::Passphrase::EggdropBlowfish->new( hash_base64 => "9tpsG/61YqX/"); $ppr = Authen::Passphrase::EggdropBlowfish->new( passphrase => "passphrase"); $hash = $ppr->hash; $hash_base64 = $ppr->hash_base64; if($ppr->match($passphrase)) { ...
An object of this class encapsulates a passphrase hashed using the Blowfish-based algorithm used in Eggdrop's blowfish.mod. This is a subclass of Authen::Passphrase, and this document assumes that the reader is familiar with the documentation for that class.
This hash scheme uses no salt, and does not accept a zero-length passphrase. It uses the passphrase as a Blowfish key to encrypt a standard plaintext block. The hash is the ciphertext block. The standard Blowfish key schedule only accepts keys from 8 to 56 bytes long; this algorithm relaxes that requirement and accepts any non-zero length. Up to 72 bytes of passphrase/key are significant; any more are ignored.
In Eggdrop the hash is represented as a "+\*(L" followed by twelve base 64 digits. The first six digits encode the second half of the hash, and the last six encode the first half. Within each half the bytes are encoded in reverse order. The base 64 digits are \*(R".\*(L", \*(R"/\*(L", \*(R"0\*(L" to \*(R"9\*(L", \*(R"a\*(L" to \*(R"z\*(L", \*(R"A\*(L" to \*(R"Z" (in that order).
Warning: The hash is small by modern standards, and the lack of salt is a weakness in this scheme. For a scheme that makes better use of Blowfish see Authen::Passphrase::BlowfishCrypt.
Generates a new passphrase recogniser object using the Eggdrop blowfish.mod algorithm. The following attributes may be given:
The hash, as a string of eight bytes.
The hash, as a string of twelve base 64 digits.
A passphrase that will be accepted.
Either the hash or the passphrase must be given.
Returns the hash value, as a string of eight bytes. Returns the hash value, as a string of twelve base 64 digits. This method is part of the standard Authen::Passphrase interface.
Authen::Passphrase, Crypt::Eksblowfish::Uklblowfish
Andrew Main (Zefram) <[email protected]>
Copyright (C) 2006, 2007, 2009, 2010, 2012 Andrew Main (Zefram) <[email protected]>
This module is free software; you can redistribute it and/or modify it under the same terms as Perl itself.