02-19-2008, 11:01 AM
|
#10 (permalink)
|
|
The Frequenter
Join Date: Nov 2007
Location: Netherlands
Posts: 460
Thanks: 49
|
As well as SOCK, thanks for the link Sam. You're on a roll at the moment aren't you?
I've triple encoded my passwords with SHA1 and MD5. Since you'll mostly only use it when loggin in and registering, it won't slow the site down tremendously. Plus, I am using SALT so I'll be fine for a couple of years.
But, the time for change is near. Hopefully PHP will incorporate it into their new PHP 6 or above, but upgrade PHP 4 and 5 with it as well. (since more programs still depend on 4.4.8)
Once again, thanks!
The solution for now is, use it in conjunction. SHA1, MD5 and SALT put together offer a great deal of security.
__________________
"Life is a bitch, take that bitch on a ride"
|
|
|