use saner default parameters for scrypt
[openssl.git] / apps / pkcs8.c
index 125bf6158ac894227670e60f1e4ca1bbee54a33e..0968fef9468ffed6d9d4fecf323da69206c87ab6 100644 (file)
@@ -203,9 +203,9 @@ int pkcs8_main(int argc, char **argv)
             break;
 #ifndef OPENSSL_NO_SCRYPT
         case OPT_SCRYPT:
-            scrypt_N = 1024;
+            scrypt_N = 16384;
             scrypt_r = 8;
-            scrypt_p = 16;
+            scrypt_p = 1;
             if (cipher == NULL)
                 cipher = EVP_aes_256_cbc();
             break;