In a newsgroup thread today, William Stacey taught me some stuff about salted password hashes stored in a traditional relational database. Apparently, this is not the way the cool kids do it anymore (although MS still has plenty of guidance suggesting to use this approach). Apparently, the those in the know use an implementation like Secure Remote Password (SRP-6a).
William couldn't find a .NET implementation, so he built one! You can find his implementation here.
Remember Me
Theme design by Jelle Druyts
Powered by: newtelligence dasBlog 1.9.6264.0
The opinions expressed herein are my own personal opinions and do not represent my employer's view in any way.
© Copyright 2008, Joseph E. Kaplan
E-mail