dsfykqq3403 2017-05-21 01:14
浏览 59

Prestashop加密纯文本密码

From the plain text password what are steps to do before to add it inside the database.

Because of the blank schema ask for passwd (=hash) and secure_key, how I can get this information with php and Prestashop API ?

I'm using Prestashop 1.7.1

Thanks !

  • 写回答

1条回答 默认 最新

  • dongshan2680 2017-05-21 05:52
    关注

    Iterate over an HMAC with a random salt for about a 100ms duration and save the salt with the hash. Use a function such as PBKDF2, Rfc2898DeriveBytes, password_hash, Bcrypt or similar functions. The point is to make the attacker spend a lot of time finding passwords by brute force.

    For PHP use php Password Hashing Functions password_hash and password_verify.

    评论

报告相同问题?

悬赏问题

  • ¥15 Vue3 大型图片数据拖动排序
  • ¥15 划分vlan后不通了
  • ¥15 GDI处理通道视频时总是带有白色锯齿
  • ¥20 用雷电模拟器安装百达屋apk一直闪退
  • ¥15 算能科技20240506咨询(拒绝大模型回答)
  • ¥15 自适应 AR 模型 参数估计Matlab程序
  • ¥100 角动量包络面如何用MATLAB绘制
  • ¥15 merge函数占用内存过大
  • ¥15 使用EMD去噪处理RML2016数据集时候的原理
  • ¥15 神经网络预测均方误差很小 但是图像上看着差别太大