![]() |
Change password hashing
Seen a lot of threads about it but no actual answer. Can it be done easily? The default md5 salt hash is easy to crack with the right gear and rainbow table. I don't care if its more stressful on the server(It can handle it), I just want to know if something ever goes wrong the password are safe.
|
Quote:
I've always though that if you applied the new algorithm to the existing hash, you could avoid both those problems. I.e. make the new algorithm newhash(md5(md5(password).salt)). There is a mod somewhere here that replaces the hash algorithm, but IIRC it only worked if you have no existing users, otherwise they'd be forced to reset their passwords (which might be OK). Edit: oh, I was thinking of the BCrypt Password Hashing mod that's showing below in the Similar Threads. It's for vb4 but maybe it would work for vb3 as well. |
Quote:
|
All times are GMT. The time now is 03:02 AM. |
Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.
X vBulletin 3.8.12 by vBS Debug Information | |
---|---|
|
|
![]() |
|
Template Usage:
Phrase Groups Available:
|
Included Files:
Hooks Called:
|