On 03.11.2010, at 22:04, Tim Nagel wrote:

> The CPU cycles can be avoided if you have a duplicate of the validation rules 
> in the password setter that will only hash the password (using cycles) when 
> the password works, otherwise setting the persisted field to null?
>  
> Means you double up the password rules though. Hm.

err .. so you would have to also add the validation rules to the setter? doesnt 
sound practical at all.

regards,
Lukas Kahwe Smith
[email protected]



-- 
If you want to report a vulnerability issue on symfony, please send it to 
security at symfony-project.com

You received this message because you are subscribed to the Google
Groups "symfony developers" group.
To post to this group, send email to [email protected]
To unsubscribe from this group, send email to
[email protected]
For more options, visit this group at
http://groups.google.com/group/symfony-devs?hl=en

Reply via email to