News Feed
Sections




News Archive
Looking for more information on how to do PHP the right way? Check out PHP: The Right Way

The Code of a Ninja:
Salt, Hash and Store Passwords Securely with Phpass
June 16, 2014 @ 11:15:37

In this post to the CodeOfANinjs.com site, they walk you through password hashing, salting and storage using the PHPAss tool from OpenWall. The post itself is a bit older, but the content still provides a good example to teach the basics.

I think the main reason why we have to hash passwords is to prevent passwords from being stolen or compromised. You see, even if someone steal your database, they will never read your actual or cleartext password. I know that some PHP frameworks or CMS already provide this functionality, but I believe that it is important for us to know how its implementation can be made.

The tutorial shows you how to use the library and how to store the result in a simple "users" table in a MySQL database. The examples hash the password given from a simple form and use prepared statements (via PDO) to save it to the database. All PHP, HTML and CSS code you'll need - including the login form that checks the username/password - is included. There's also a few screenshots showing what the resulting forms and data should look like.

0 comments voice your opinion now!
phpass tutorial hash salt password storage mysql user

Link: http://www.codeofaninja.com/2013/03/php-hash-password.html

blog comments powered by Disqus

Similar Posts

Matthias Noback: Symfony2: Add a global option to console commands and generate a PID file

Kevin Schroeder's Blog: Subnet validation with Zend Framework

PHPBuilder.com: Pro PHP Security / Preventing SQL Injection

NetTuts.com: Learn to Create Interactive Drill-Down Dashboards with PHP and FusionCharts

WaxJelly Blog: Using PHP to make a MySQL "abstraction layer"


Community Events





Don't see your event here?
Let us know!


laravel interview unittest introduction package api language community opinion series voicesoftheelephpant symfony install library bugfix podcast zendserver framework deployment release

All content copyright, 2014 PHPDeveloper.org :: info@phpdeveloper.org - Powered by the Solar PHP Framework