Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Salts are almost never secret, in fact; typically the salt is stored in plaintext alongside the hashed password. As you note, that's because the salt is supposed to defeat pre-computed rainbow tables, not be a shared secret.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: