View Single Post
Old 07-04-2005, 08:49 AM   #17 (permalink)
idx
Senior Grasshopper
 
idx's Avatar
 
Join Date: Jun 2003
Location: FL
Posts: 317
idx is on a distinguished road
Quote:
Originally Posted by teknomage1
If you discard the original salt you have no way to re-encrypt the user's login data, to verify they typed the proper password.
Exactly. Unless he's talking about something different like salting some part of a cookie or some key, changing the password salt will break everyone's password.

-r
idx is offline   Reply With Quote