20 ms·
He's talking about how each password should use a separate salt. This is normally stored next to the password hash. Many hashing algo implementations will even
by path411 9y ago
He's talking about how each password should use a separate salt. This is normally stored next to the password hash. Many hashing algo implementations will even do this for you.
- etxm 9y agoCool. So if it’s in the same table, it’s just as secure as one salt sitting in a config file. When the table gets leaked, so does the salt. Also, is he? More than one salt sounds too complicated for him.