2007年12月26日星期三

用户登录的管理

看到了两篇英文的关于用户登录管理的相关文章和网站,它们是
http://pajhome.org.uk/crypt/md5/auth.html
Introduction

The most common use of the hash scripts is to protect login passwords. Here I explain how do this in a way that provides as much security as possible.


Improved Persistent Login Cookie Best Practice

Charles Miller's article, "Persistent Login Cookie Best Practice," describes a relatively secure approach to implementing the familiar "Remember Me" option for web sites. In this article, I propose an improvement that retains all the benefits of that approach but also makes it possible to detect when a persistent login cookie has been stolen and used by an attacker.

没有评论: