From d94fe42ae5e67e9fd600d204a08eef00cc10a7df Mon Sep 17 00:00:00 2001 From: Tim Graham Date: Mon, 5 Jan 2015 10:55:48 -0500 Subject: [PATCH] Forwardported release note for 4aed731154b12e2948ee2b6a8baa5083840a343b. --- docs/releases/1.7.3.txt | 7 ++++++- 1 file changed, 6 insertions(+), 1 deletion(-) diff --git a/docs/releases/1.7.3.txt b/docs/releases/1.7.3.txt index 6eb8194ba03..50b6b18f16b 100644 --- a/docs/releases/1.7.3.txt +++ b/docs/releases/1.7.3.txt @@ -11,4 +11,9 @@ Django 1.7.3 fixes several bugs in 1.7.2. Bugfixes ======== -* ... +* The default iteration count for the PBKDF2 password hasher has been + increased by 25%. This part of the normal major release process was + inadvertently omitted in 1.7. This backwards compatible change will not + affect users who have subclassed + ``django.contrib.auth.hashers.PBKDF2PasswordHasher`` to change the + default value.