I'd do it as a 1 way encryption using something like MD5. You encrypt their entered password against the one stored and if they don't match the password is wrong. If they request a new password, have the system generate one for them.
I'd do it as a 1 way encryption using something like MD5. You encrypt their entered password against the one stored and if they don't match the password is wrong. If they request a new password, have the system generate one for them.
Although it's not safe from people who might get on the webserver its self. If that happens to be a malicious person then your database could be in trouble.
Not completely. Some consider it worthless due to its popularity with password hashing (and the resulting rainbow tables available), but there are plenty ways to increase the security of it. Salting
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.