drurhg37071 2014-11-27 16:38
浏览 33
已采纳

php需要工作代码作为密码哈希的例子

I am searching the internet for what type of hashing algorithm should I use to store passwords in MySQL database and for sending email confirmation messages with hashed token, the algorithm should include: 1- at least 14 chars random salt (uding udev random) 2-a key that will be stored on the server 3-timestamp 4-a very strong and secure hashing algorithm using the function hash_***(is this the best?)

I haven't found elegent code that workds, could you please show me

Thank you

  • 写回答

1条回答 默认 最新

  • dqr91899 2014-11-27 16:56
    关注

    Follow the examples provided in PHP the Right Way under password hashing:

    require 'password.php';
    
    $passwordHash = password_hash('secret-password', PASSWORD_DEFAULT);
    
    if (password_verify('bad-password', $passwordHash)) {
        // Correct Password
    } else {
        // Wrong password
    }
    

    DO NOT under any circumstances "invent" your own algorithm. These are notoriously tricky to get right and unless you have a background in cryptography you will almost certainly get it dangerously wrong.

    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论

报告相同问题?

悬赏问题

  • ¥15 执行 virtuoso 命令后,界面没有,cadence 启动不起来
  • ¥50 comfyui下连接animatediff节点生成视频质量非常差的原因
  • ¥20 有关区间dp的问题求解
  • ¥15 多电路系统共用电源的串扰问题
  • ¥15 slam rangenet++配置
  • ¥15 有没有研究水声通信方面的帮我改俩matlab代码
  • ¥15 ubuntu子系统密码忘记
  • ¥15 信号傅里叶变换在matlab上遇到的小问题请求帮助
  • ¥15 保护模式-系统加载-段寄存器
  • ¥15 电脑桌面设定一个区域禁止鼠标操作