3 ms·
No doubt I'm missing something dumb, but would one get similar benefits from simply storing half of the password hash on one server, and half on the other? To a
by jpallen 14y ago
No doubt I'm missing something dumb, but would one get similar benefits from simply storing half of the password hash on one server, and half on the other? To authenticate the password, you would then just authenticate it against both servers which can tell you whether their half matches. What is the advantage of the technique described[1] in the article compared to this?
[1] That's putting it a bit kindly. 'that we were told exists' might be more fair.