3 ms·
OR you could encrypt user password with your public key. Then when you login, you can decrypt user password with your private key. Then go on decrypting user in
by coo1k 10y ago
OR you could encrypt user password with your public key. Then when you login, you can decrypt user password with your private key. Then go on decrypting user information with that password. This way you won't have to make copy of information posted by users and still will be able to view it with admin login.
- zimpenfish 10y agoDoesn't that mean anyone who captures the "admin" private key has full access to the database?
- coo1k 10y agoYes, but since the key resides with admin and not on server, I am assuming the private key will be stored securely.