[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [WEB SECURITY] thoughts on salted passwords within web applications?



On Jan 27, 2008 8:20 PM, Brian Eaton <eaton.lists@xxxxxxxxx> wrote:
> The tables will be indexed by plain text passwords, not by the hashed
> versions.

Whoops, I misspoke.  The tables will be built from plain text
passwords, not indexed by them.  The index is by the hash.

Cheers,
Brian

----------------------------------------------------------------------------
Join us on IRC: irc.freenode.net #webappsec

Have a question? Search The Web Security Mailing List Archives: 
http://www.webappsec.org/lists/websecurity/

Subscribe via RSS: 
http://www.webappsec.org/rss/websecurity.rss [RSS Feed]



Brought to you by http://www.webappsec.org
Search this site