Hacker News new | past | comments | ask | show | jobs | submit login

The database would contain existing passwords without normalization. You also you have to hold the unnormalized password. Super silly to do that to save a few processor cycles on login.



It's amazing how much misinformation is in this thread. You should do further reading on password hashing and rethink whether you really have to store two different passwords...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: