File: _hash.py

package info (click to toggle)
flufl.password 1.3-6
  • links: PTS, VCS
  • area: main
  • in suites: forky, sid, trixie
  • size: 236 kB
  • sloc: python: 481; makefile: 8
file content (49 lines) | stat: -rw-r--r-- 1,776 bytes parent folder | download | duplicates (5)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
# Copyright (C) 2011-2014 by Barry A. Warsaw
#
# This file is part of flufl.password
#
# flufl.password is free software: you can redistribute it and/or modify it
# under the terms of the GNU Lesser General Public License as published by the
# Free Software Foundation, version 3 of the License.
#
# flufl.password is distributed in the hope that it will be useful, but
# WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY
# or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU Lesser General Public
# License for more details.
#
# You should have received a copy of the GNU Lesser General Public License
# along with flufl.password.  If not, see <http://www.gnu.org/licenses/>.

"""Make secrets."""

from __future__ import absolute_import, print_function, unicode_literals

__metaclass__ = type
__all__ = [
    'make_secret',
    ]



def make_secret(password, scheme=None):
    """Return a hashed password using the given scheme.

    :param password: The plain text password to hash.
    :type password: bytes or utf-8 encoded string.
    :param scheme: The scheme class to use for encryption.  If not given,
        `SSHAPasswordScheme` is used.
    :type scheme: PasswordScheme subclass.
    :return: The hashed password.
    :rtype: bytes
    """
    if not isinstance(password, bytes):
        # If it's not a bytes, it better be a unicode in Python 2 or a str in
        # Python 3.  Let encoding errors propagate up.
        password = password.encode('utf-8')
    if scheme is None:
        from flufl.password.schemes import SSHAPasswordScheme
        scheme = SSHAPasswordScheme
    secret = scheme.make_secret(password)
    if not isinstance(scheme.TAG, bytes):
        tag = scheme.TAG.encode('utf-8')
    return b'{' + tag + b'}' + secret