Douglas Muth on 20 Jan 2006 17:49:30 -0000


[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

Re: [PLUG] Programmers: PAM Authentication through a web application?


On 1/20/06, Marc Zucchelli <marcz908@yahoo.com> wrote:
>
> 1.  I could keep an updated md5 hash of their password
> in a database that I can authenticate against.
>

That's probably the most portable method.

Oh, and I'd recommend using some form of salt, since there are
publically available databases that let people perform lookups of
strings used to generate hashes.

-- Doug
___________________________________________________________________________
Philadelphia Linux Users Group         --        http://www.phillylinux.org
Announcements - http://lists.phillylinux.org/mailman/listinfo/plug-announce
General Discussion  --   http://lists.phillylinux.org/mailman/listinfo/plug