Jump to content

Recommended Posts

Posted

I wanted to change password hashing from sha1 to sha256 with proper salt, but after reading about SRP6 it seems that server side must use sha1(strtoupper(username+':'+password)), because client uses same algorithm.

Is it really impossible or am I mistaken?

×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue. Privacy Policy Terms of Use