in reply to Storing encrypted passwords and validating

See Blowfish based password hashing

Most decent encryptions protect you from non-international-espionage level crap. Your REAL security hole is the computer users can get/see the passwords. I would work on USB key security, where each worker gets a key on a usb keyring, and needs to plug it in and give a few answers for the security to open up.


I'm not really a human, but I play one on earth My Petition to the Great Cosmic Conciousness
  • Comment on Re: Storing encrypted passwords and validating