But Blowfish turns my iddy bitty 8-character password into 118 characters! Looking at the cookie standards, that's still well within the size limit, so maybe that's not so bad. Well, maybe that's not even true, it seems to be a particular implementation of Blowfish, which may be adding filename, a hash, and other information to the encrypted stream. The raw algorithm seems to cause little expansion (using this module: http://bofh.concordia.ca/blowfish.py )
Comment on Homebrew encryption
by Ian Bicking