On Fri, 25 Jul 2003 09:33:30 -0400 "Reuben D. Budiardja" <[EMAIL PROTECTED]> wrote:
> I think if you encrypt MD5 before storing it into the table, then there > is no > way to retrieve the corresponding clear text right? since MD5 is one-way > encryption.. yes, but normally when doing passwords, one encrypts and compares the encrypted form. being able to decrypt stored passwords is generally considered to be a "bad thing". this goes back to the earliest days of Un*x, at the very least. i know it was standard in V7, it probably was standard in V6, and likely was being done that way even before then (V7 is where my Un*x experience starts.) one of the raps on Windows NT & friends is that the password hashes are easily reversable, which means that if you manage to steal them, you're well positioned to take ownership of the system. but this is kind of OT for a postgresql list now... richard -- Richard Welty [EMAIL PROTECTED] Averill Park Networking 518-573-7592 Java, PHP, PostgreSQL, Unix, Linux, IP Network Engineering, Security ---------------------------(end of broadcast)--------------------------- TIP 9: the planner will ignore your desire to choose an index scan if your joining column's datatypes do not match