Storing Passwords, or The Risk of a No-Salt Diet

Tech @ FTC 2013-03-21

Summary:

A while back, I wrote about passwords and promised a later post on salting.  This is it: a deeper look at how servers should accept and store passwords.  This is a complement to the usual articles on passwords, which focus on the user (you know the ones: “pick strong passwords”); here, I’ll be looking at [...]

Link:

http://techatftc.wordpress.com/2013/03/21/storing-passwords-or-the-risk-of-a-no-salt-diet/

From feeds:

Gudgeon and gist » Tech @ FTC

Tags:

passwords hashing tech@ftc salt

Authors:

Steve Bellovin

Date tagged:

03/21/2013, 17:38

Date published:

03/21/2013, 13:31