9 Comments
User's avatar
sravan's avatar

How would you able to compare the passwords if you hash out them with the salt? hashing a one way

Neo Kim's avatar

- Original fingerprint & salt is stored in the database when you create an account

- The salt is combined with entered password (when you log in again), and it's hashed to create a new fingerprint

- New and original fingerprints are compared

Does that help?

Aram Tchekrekjian's avatar

Amazing read Neo, easy and direct to the point. Nice visuals as well. Good job.

Neo Kim's avatar

thank you very much, and happy to see you on Substack.

Raul Junco's avatar

Good refresher on how to store passwords safer, Neo 👌

Neo Kim's avatar

thank you very much, Raul.

Christopher Clemmons's avatar

Great article. I learned a lot

Neo Kim's avatar

nice, happy to read your feedback.

Mouaz Aljomaat's avatar

About stretching and efficiency, does making hash Function twice make the process slower?