+1 you should definitively NOT encrypt

Cupid Media hacked, 42 million passwords was stolen:
http://www.facepunch.com/showthread.php?t=1327069

You're Probably Storing Passwords Incorrectly:
http://www.codinghorror.com/blog/2007/09/youre-probably-storing-passwords-incorrectly.html

And now you mentioned it, Monticello actually sucks on this one








On Nov 21, 2013, at 7:06 PM, Davide Varvello <varvello@yahoo.com> wrote:

Hi Mariano,

Hash functions are one way
(http://en.wikipedia.org/wiki/Cryptographic_hash_function) that's because
usually you don't want someone can decrypt password.

Cheers
Davide


Mariano Martinez Peck wrote
Hi Paul, and just to be sure I understand...none of them could work as a
two-way encryption, right?
The only one is your Pharo's version of Blowfish but that only works with
8
chars long. Is it like this? Or is there any other two-way encryption?

Thanks!





--
View this message in context: http://forum.world.st/How-to-encrypt-a-password-tp3933585p4724097.html
Sent from the Pharo Smalltalk Developers mailing list archive at Nabble.com.