Re: How passwords can be crypted in postgres? - Mailing list pgsql-general

From Jens Hartwig
Subject Re: How passwords can be crypted in postgres?
Date
Msg-id 3A51B030.DEFBBDEB@debis.com
Whole thread Raw
In response to Re: How passwords can be crypted in postgres?  (The Hermit Hacker <scrappy@hub.org>)
Responses Re: How passwords can be crypted in postgres?  (<drevil@sidereal.kz>)
List pgsql-general
>  [...]
> Isn't this just as bad? If you store the encrypted password, that doesn't
> help you in the slightest in this case, because if you can breach the list
> of encrypted passwords, you still know what you need to send as the
> "password" from the front end to let you into the database.
>  [...]

If you encrypt the input from the frontend as well and compare the
encrypted strings it will not help you to look into the list of
encrypted passwords ... or am I wrong?

Regards, Jens Hartwig

=============================================
Jens Hartwig
---------------------------------------------
debis Systemhaus GEI mbH
10875 Berlin
Tel.     : +49 (0)30 2554-3282
Fax      : +49 (0)30 2554-3187
Mobil    : +49 (0)170 167-2648
E-Mail   : jhartwig@debis.com
=============================================

pgsql-general by date:

Previous
From: "Gordan Bobic"
Date:
Subject: Re: SV: MySQL and PostgreSQL speed compare
Next
From: Colin Taylor
Date:
Subject: System Tables Questions