Commit 6d1b637b authored by Dr. Stephen Henson's avatar Dr. Stephen Henson
Browse files

Clarify docs.

parent fd699ac5
Loading
Loading
Loading
Loading
+3 −2
Original line number Diff line number Diff line
@@ -119,8 +119,9 @@ B<openssl enc -ciphername>.

A password will be prompted for to derive the key and IV if necessary.

The B<-salt> option should B<ALWAYS> be used unless you want compatability
with previous versions of OpenSSL and SSLeay.
The B<-salt> option should B<ALWAYS> be used if the key is being derived
from a password unless you want compatability with previous versions of
OpenSSL and SSLeay.

Without the B<-salt> option it is possible to perform efficient dictionary
attacks on the password and to attack stream cipher encrypted data. The reason