On Wed, 07 Sep 2016 at 11:18:57 +0200, Andreas Bartelt wrote: > yes, due to the larger internal state of the blowfish algorithm which is > harder to efficiently realize in dedicated hardware. However, since bcrypt's > internal state effectively is of fixed size, scrypt would be an even better > option since it allows for a parameterization of this internal state. Is > there any interest in switching to scrypt in the context of password > authentication on OpenBSD?
That would require changing our logo from a blowfish to a bobblehead of Colin Percival.