I'm creating an Admin Panel section of a website where there will only be one user. I was thinking of just storing a password in a separate config.php file instead of creating a users table with usersnames and hashed pw's as I typically do for membership areas since it's only one user.
Thoughts on doing this? Has anyone else tried this? Are there some major vulnerabilities I should be aware of?
Example config.php:
$pw = "honeybadgerbubblegum";
Example login.php:
require('config.php');
if(isset($_POST['login']))
{
$upw = md5($_POST['upw']);
$pwHashed = md5($pw);
if($upw === $pwHashed)
{
//success
}
}