{SSHA} is recommended for general use because it is widely supported and known to be hard to crack.

{CRYPT} is NOT recommended for general use because it's values are operating system dependent and, depending on the algorithm used, may be easily cracked. It is primarily meant to be used in transition from passwd(5) authentication to LDAP authentication.

