in reply to Storing encrypted passwords and validating

You may have a look at one of Authen::Passphrase modules. Particularly at Authen::Passphrase::SaltedDigest. Salt prevents attackers from using precomputed hashes.

  • Comment on Re: Storing encrypted passwords and validating

Replies are listed 'Best First'.
Re^2: Storing encrypted passwords and validating
by zerohero (Monk) on Mar 28, 2009 at 23:53 UTC

    SaltedDigest looks like it does exactly the right thing