Previous Thread
Next Thread
Print Thread
Rating: 5
Joined: Jul 1999
Posts: 118
Enthusiast
Enthusiast
Offline
Joined: Jul 1999
Posts: 118
If I spend 15 hours on this, maybe I find a solution. But if Scream or another programmers look at this, they can probably fix this in half hour.

Though this is not a problem for most people, it still seems to be a bug.It could even be a php implementation bug, that the crypt function is not consistent over operating systems.

Our provider's support thinks there is a problem that it could be either DES or MD5.

there seems to be a problem at password CREATION and password CHANGE time! Even when something else was changed in the profile page that also contains the password, then the password also gets saved again!

how long is the initial salt? I think it is only a lengh of 2 characters!? and then later at password VERIFICATION time the salt is longer? is there not something wrong?

It seems that different systems default to different crypt algorithms (MD5,DES) but somehow they can be forced to a certain algorithm. No clue why they would not use the same algorithm, though. I also observed the problem only when creating the password on FreeBSD and then verifying the password on Linux. I am not aware that the problem also arises the other way around, but I might be wrong. Also, it could have something to do with perl vs php versions, but I also believe it occurred in both perl and php.

"You can recognize
MD5 passwords because the encrypted string always begins with "$1$". "
The password verification program could, for example, check for "$1$" at the beginning.

Sponsored Links
Entire Thread
Subject Posted By Posted
incompatible crypt versions:password problem mario2 04/29/2002 9:07 AM
This is a serious problem, someone pls reply!!! mario2 05/06/2002 11:34 PM
Re: This is a serious problem, someone pls reply!! Gardener 05/07/2002 12:54 AM
Scream or other specialists, please reply!! mario2 05/08/2002 11:04 PM
could it be sensitive to the length of password? mario2 05/08/2002 11:08 PM
Re: Scream or other specialists, please reply!! Dave_L_dup1 05/08/2002 11:59 PM
Re: Scream or other specialists, please reply!! Gardener 05/12/2002 1:39 AM
how is crypt implementation in perl? mario2 05/12/2002 3:03 AM

Link Copied to Clipboard
Donate Today!
Donate via PayPal

Donate to UBBDev today to help aid in Operational, Server and Script Maintenance, and Development costs.

Please also see our parent organization VNC Web Services if you're in the need of a new UBB.threads Install or Upgrade, Site/Server Migrations, or Security and Coding Services.
Recommended Hosts
We have personally worked with and recommend the following Web Hosts:
Stable Host
bluehost
InterServer
Visit us on Facebook
Member Spotlight
isaac
isaac
California
Posts: 1,157
Joined: July 2001
Forum Statistics
Forums63
Topics37,575
Posts293,931
Members13,823
Most Online6,139
Sep 21st, 2024
Today's Statistics
Currently Online
Topics Created
Posts Made
Users Online
Birthdays
Top Posters
AllenAyres 21,079
JoshPet 10,369
LK 7,394
Lord Dexter 6,708
Gizmo 5,834
Greg Hard 4,625
Top Posters(30 Days)
Gizmo 1
Top Likes Received
isaac 82
Gizmo 20
Brett 7
WebGuy 2
Morgan 2
Top Likes Received (30 Days)
None yet
The UBB.Developers Network (UBB.Dev/Threads.Dev) is ©2000-2025 VNC Web Services

 
Powered by UBB.threads™ PHP Forum Software 8.0.1
(Snapshot build 20240918)