A far far better approach would be to implement salting, which makes 
sites like this useless against your passwords.

Harvey.

Karl wrote:
>     I am thinking I might have to run the hashes stored in our 
> database through that 'tool' and those that fail get their "update 
> your password time" flag set... and update the page to include better 
> advise on choosing stronger passwords.
>  


--~--~---------~--~----~------------~-------~--~----~
NZ PHP Users Group: http://groups.google.com/group/nzphpug
To post, send email to [email protected]
To unsubscribe, send email to
[EMAIL PROTECTED]
-~----------~----~----~----~------~----~------~--~---

Reply via email to