Solved

asp.net membership question - Hashed passwords cannot be decoded.

Posted on 2011-02-11
1
2,826 Views
1 Endorsement
Last Modified: 2012-05-11
I'm trying to retrieve user passwords for an admin page.  Apparently I've been using hashed passwords.  I'm developing a low security, friendly site, so I don't give a rip about how secure it is.  I read that I need to change my password format.  I tried this by adding passwordFormat="true" in my web.config, but I still get the 'Hashed passwords cannot be decoded.' error on this line:
Line 180:        MembershipUtil.Password = Membership.Provider.GetPassword(MembershipUtil.Username, String.Empty);

Please advise.  Thanks -
1
Comment
Question by:JT_SIRO
1 Comment
 
LVL 14

Accepted Solution

by:
quizwedge earned 250 total points
ID: 34875770
Your existing users have hashed passwords, so you can't decode them. I found the following response at https://jcbauza.com/forums/p/1076/1270.aspx (though their SSL certificate has expired, so you'll probably get an error)

After a while we discovered what the problem was. The users were created originally by the application using a hashed password. This became an issue as a user with a hash password cannot be migrated automatically to the new encryption setting. So, even though your application is using encryption for the passwords, previously created users will face the issues mentioned before. What we ended up doing was deleting the existing users and creating new ones with the new settings on Web.Config. You could also reset the users and modify a column in the database if deleting them is not an option.
2

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
SSRS ReportViewer report timeout 7 104
Entity Framework 7 32
Capture logon name 13 42
Coding C# in Linux 8 33
IntroductionWhile developing web applications, a single page might contain many regions and each region might contain many number of controls with the capability to perform  postback. Many times you might need to perform some action on an ASP.NET po…
This article aims to explain the working of CircularLogArchiver. This tool was designed to solve the buildup of log file in cases where systems do not support circular logging or where circular logging is not enabled
Along with being a a promotional video for my three-day Annielytics Dashboard Seminor, this Micro Tutorial is an intro to Google Analytics API data.
Many functions in Excel can make decisions. The most simple of these is the IF function: it returns a value depending on whether a condition you describe is true or false. Once you get the hang of using the IF function, you will find it easier to us…

895 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

13 Experts available now in Live!

Get 1:1 Help Now