Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I can't think of any silly comments from my code right now, but I have a new one for you :-)

  # ...your computer really doesn't care if you seperate the password from the nonce with a dash; it's a computer, not a 2nd grade teacher[1]
  echo 'MD5(): ' . md5(date('ymdHis', time()) . 'password-is-yummy-salty-safety-' . $pw);
1. http://www.matasano.com/log/958/enough-with-the-rainbow-tabl...


My computer also doesn't care if I put a space between each concatenation operator, but I do. :)


Actually using time as an additional salt is a very healthy practice, just make sure you store the time you use.

It reduces collisions.


You might as well use random salts.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: