I am trying to make the login page faster by using low ram
$hash = sodium_crypto_pwhash_str($password.$MAC, 1, 10240);
My question is that I dont like login page taking too long to process like one second and if I make it faster by using minimum parameters does it make it insecure? I am using a very long MAC to make it harder to brute force but extremely fast.
Average time 0.0001368522644043 ms
How secure is Argon2ID with parameters....What is long MAC? – kelalaka Jan 04 '20 at 23:09