benmanning
asked on
Storing users passwords
I am currently designing a system that involves customer logins. One possible login step is entering 3 random chars from the password.
I know typically. passwords are stored as a hash. However, it is impossible to use 3 random chars with this method. Can anyone tell me how the passwords should be stored without storing them as plain text?
I know typically. passwords are stored as a hash. However, it is impossible to use 3 random chars with this method. Can anyone tell me how the passwords should be stored without storing them as plain text?
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
no, except brute force