Hacker News new | past | comments | ask | show | jobs | submit login

State of the art multiple years ago was 100ns over LAN (aka datacenter). It's something to worry about. Honestly, I'd be extra paranoid and use a construct that hashes the supplied digest an extra time on top of doing a timing-safe comparison.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: