opnsense-ports/security/rubygem-securecompare/pkg-descr
Franco Fichtner f80062b735 */*: sync with upstream
Taken from: HardenedBSD
2017-06-13 06:48:29 +02:00

6 lines
299 B
Text

securecompare borrows the secure_compare private method from
ActiveSupport::MessageVerifier which lets you do safely compare strings without
being vulnerable to timing attacks. Useful for Basic HTTP Authentication in your
rack/rails application.
WWW: https://github.com/samuelkadolph/securecompare