[thelist] Retrieving password() field from a MySQL table

noah noah at tookish.net
Mon Jan 20 23:41:00 CST 2003


At 12:00 AM 21/01/2003, rudy wrote:
>the question is intended simply to remind the person of their password
>
>the answer to the question is not stored
>
>e.g. "what type of a dog did i have and what was the street number at my
>first apartment when i moved out of my parents' house?"
>
>the answer (schnauser53) is the password

People are lazy. If you do this, be sure to filter out people who enter
"schnauser53" as their challenge question.

I'd be wary of allowing people to choose their own passwords and their own
challenges -- I suspect you'll get combinations like "smith" and "my last
name."

Cheers,
Noah




More information about the thelist mailing list