Joe Wrote:

> If you are using SSL then why even bother hashing the password? I think
> the original poster said he/she could not use SSL (but I may be mistaken).
Well, we want to avoid SSL if possible. Certificates for the servers aren't
that cheap, and we could potentially have quite a few servers. As we're a
startup company, I don't really want to commit ourselves to get SSL, seeing
as with SSL is only partly about encryption - its more to do with making
sure yiour dealing with trusted parties.

sam


---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, email: [EMAIL PROTECTED]

Reply via email to