On Thu, Dec 4, 2008 at 5:56 PM, Ron Savage <[EMAIL PROTECTED]> wrote:

> For those people who still think MD5 offers some type of security, I
> suggest you direct readers to:
> http://en.wikipedia.org/wiki/Rainbow_table


Thanks, I didn't realize I was just hashing, not really encrypting.  I'll
switch.  What would you recommend instead?  Crypt::PasswdMD5?  and randomly
generate a salt each time I write the encrypted password to the database?

-- Mark

#####  CGI::Application community mailing list  ################
##                                                            ##
##  To unsubscribe, or change your message delivery options,  ##
##  visit:  http://www.erlbaum.net/mailman/listinfo/cgiapp    ##
##                                                            ##
##  Web archive:   http://www.erlbaum.net/pipermail/cgiapp/   ##
##  Wiki:          http://cgiapp.erlbaum.net/                 ##
##                                                            ##
################################################################

Reply via email to