How To Fix SALTEDPWD006 - Password hash salt size too small (& bits < & bits)


SAP Error Message - Details

  • Message type: E = Error

  • Message class: SALTEDPWD - See Function Module CHECK_PWDHASHSTRING_SUPPORTED

  • Message number: 006

  • Message text: Password hash salt size too small (& bits < & bits)

  • Show details Hide details


  • Self-Explanatory Message

    Since SAP believes that this specific error message is 'self-explanatory,' no more information has been given.The majority of messages in the SAP system have a message text, however this is frequently insufficient to comprehend or resolve the problem.

    To make things easier, more detailed information is frequently added to describe the issue, how to fix it, and the necessary steps or configuration modifications.

    Unfortunately, there isn't any extra information in this error notice.



    What else can you do?

    First, use our AnswerBot below to get a possible cause and solution (requires a premium subscription).

    Also, review the in-depth Common Questions & Answers listed below; you could discover a solution there or be able to connect with others who have faced similar challenges.

    You can also try searching the SAP support portal (support.sap.com) but you need a special user ID to access it. It is possible that an SAP support note exists that provides additional details about the mistake or even steps for fixing it.


Smart SAP Assistant

  • What is the cause and solution for SAP error message SALTEDPWD006 - Password hash salt size too small (& bits < & bits) ?

    The SAP error message SALTEDPWD006 indicates that the password hash salt size is too small. This error typically occurs when the system is configured to use a password hashing mechanism that requires a certain minimum size for the salt, but the current configuration does not meet this requirement.

    Cause:

    The error message specifically states that the salt size is less than the required number of bits. In password hashing, a salt is a random value added to the password before hashing to ensure that the same password does not always produce the same hash. If the salt size is too small, it can lead to vulnerabilities such as rainbow table attacks.

    Solution:

    To resolve this issue, you need to increase the size of the password hash salt. Here are the steps you can take:

    1. Check Current Configuration: Review the current password hashing configuration in your SAP system. This can typically be found in the profile parameters or security settings.

    2. Update Salt Size: Modify the configuration to ensure that the salt size meets the minimum requirement. This may involve changing system parameters related to password hashing.

    3. Use Stronger Hashing Algorithms: If your system allows, consider using stronger hashing algorithms that inherently use larger salt sizes. For example, algorithms like PBKDF2, bcrypt, or Argon2 are recommended for better security.

    4. Consult Documentation: Refer to the SAP documentation for your specific version to find the exact parameters that control password hashing and salt sizes. This will provide guidance on how to make the necessary changes.

    5. Test Changes: After making changes, test the password hashing functionality to ensure that it works correctly and that the error no longer appears.

    6. Monitor Security: Regularly monitor your system's security settings and configurations to ensure compliance with best practices.

    Related Information:

    • SAP Notes: Check SAP Notes related to password management and security for any specific recommendations or patches that may address this issue.
    • Security Best Practices: Familiarize yourself with security best practices for password management in SAP systems, including the use of strong passwords, regular password changes, and account lockout policies.
    • User Training: Educate users about the importance of password security and the role of salts in protecting their credentials.

    If you continue to experience issues after following these steps, consider reaching out to SAP support for further assistance.

    • Do you have any question about this error?


      Upgrade now to chat with this error.


Instant HelpGet instant SAP help. Start your 7-day free trial now.


Related SAP Error Messages

Click the links below to see the following related messages:

Click on this link to search all SAP messages.


Rating
ERPlingo simplifies finding the accurate answers to SAP message errors. I now use every week. A must have tool for anyone working with SAP! Highly recommended!
Rate 1
Kent Bettisworth
Executive SAP Consultant