Changes
Title
unchanged
Secure password hashing with bCrypt
Category
unchanged
How-tos
Yii version
unchanged
Tags
unchanged
security, password, hash, hashing, bcrypt, login
Content
changed
[...]
$key = uniqid($this->prefix, true);
// 12 rounds of HMAC must be reproduced / created verbatim, no known shortcuts.
// Salsa20 returns more than enough bytes.
for($i = 0; $i < 12; $i++) {
$bytes = hash_hmac('salsa20ha512', microtime() . $bytes, $key, true);
usleep(10);
}
}
return $bytes;
}[...]