File: //usr/local/openssl/man/man1/openssl-passwd.1
.\" -*- mode: troff; coding: utf-8 -*-
.\" Automatically generated by Pod::Man 5.01 (Pod::Simple 3.43)
.\"
.\" Standard preamble:
.\" ========================================================================
.de Sp \" Vertical space (when we can't use .PP)
.if t .sp .5v
.if n .sp
..
.de Vb \" Begin verbatim text
.ft CW
.nf
.ne \\$1
..
.de Ve \" End verbatim text
.ft R
.fi
..
.\" \*(C` and \*(C' are quotes in nroff, nothing in troff, for use with C<>.
.ie n \{\
. ds C` ""
. ds C' ""
'br\}
.el\{\
. ds C`
. ds C'
'br\}
.\"
.\" Escape single quotes in literal strings from groff's Unicode transform.
.ie \n(.g .ds Aq \(aq
.el .ds Aq '
.\"
.\" If the F register is >0, we'll generate index entries on stderr for
.\" titles (.TH), headers (.SH), subsections (.SS), items (.Ip), and index
.\" entries marked with X<> in POD. Of course, you'll have to process the
.\" output yourself in some meaningful fashion.
.\"
.\" Avoid warning from groff about undefined register 'F'.
.de IX
..
.nr rF 0
.if \n(.g .if rF .nr rF 1
.if (\n(rF:(\n(.g==0)) \{\
. if \nF \{\
. de IX
. tm Index:\\$1\t\\n%\t"\\$2"
..
. if !\nF==2 \{\
. nr % 0
. nr F 2
. \}
. \}
.\}
.rr rF
.\" ========================================================================
.\"
.IX Title "PASSWD 1"
.TH PASSWD 1 2019-12-20 1.0.2u OpenSSL
.\" For nroff, turn off justification. Always turn off hyphenation; it makes
.\" way too many mistakes in technical documents.
.if n .ad l
.nh
.SH NAME
openssl\-passwd,
passwd \- compute password hashes
.SH SYNOPSIS
.IX Header "SYNOPSIS"
\&\fBopenssl passwd\fR
[\fB\-crypt\fR]
[\fB\-1\fR]
[\fB\-apr1\fR]
[\fB\-salt\fR \fIstring\fR]
[\fB\-in\fR \fIfile\fR]
[\fB\-stdin\fR]
[\fB\-noverify\fR]
[\fB\-quiet\fR]
[\fB\-table\fR]
{\fIpassword\fR}
.SH DESCRIPTION
.IX Header "DESCRIPTION"
The \fBpasswd\fR command computes the hash of a password typed at
run-time or the hash of each password in a list. The password list is
taken from the named file for option \fB\-in file\fR, from stdin for
option \fB\-stdin\fR, or from the command line, or from the terminal otherwise.
The Unix standard algorithm \fBcrypt\fR and the MD5\-based BSD password
algorithm \fB1\fR and its Apache variant \fBapr1\fR are available.
.SH OPTIONS
.IX Header "OPTIONS"
.IP \fB\-crypt\fR 4
.IX Item "-crypt"
Use the \fBcrypt\fR algorithm (default).
.IP \fB\-1\fR 4
.IX Item "-1"
Use the MD5 based BSD password algorithm \fB1\fR.
.IP \fB\-apr1\fR 4
.IX Item "-apr1"
Use the \fBapr1\fR algorithm (Apache variant of the BSD algorithm).
.IP "\fB\-salt\fR \fIstring\fR" 4
.IX Item "-salt string"
Use the specified salt.
When reading a password from the terminal, this implies \fB\-noverify\fR.
.IP "\fB\-in\fR \fIfile\fR" 4
.IX Item "-in file"
Read passwords from \fIfile\fR.
.IP \fB\-stdin\fR 4
.IX Item "-stdin"
Read passwords from \fBstdin\fR.
.IP \fB\-noverify\fR 4
.IX Item "-noverify"
Don't verify when reading a password from the terminal.
.IP \fB\-quiet\fR 4
.IX Item "-quiet"
Don't output warnings when passwords given at the command line are truncated.
.IP \fB\-table\fR 4
.IX Item "-table"
In the output list, prepend the cleartext password and a TAB character
to each password hash.
.SH EXAMPLES
.IX Header "EXAMPLES"
\&\fBopenssl passwd \-crypt \-salt xx password\fR prints \fBxxj31ZMTZzkVA\fR.
.PP
\&\fBopenssl passwd \-1 \-salt xxxxxxxx password\fR prints \fR\f(CB$1\fR\fB$xxxxxxxx$UYCIxa628.9qXjpQCjM4a.\fR.
.PP
\&\fBopenssl passwd \-apr1 \-salt xxxxxxxx password\fR prints \fR\f(CB$apr1\fR\fB$xxxxxxxx$dxHfLAsjHkDRmG83UXe8K0\fR.