c# - How to Store Password? Forms Authentication -
we using forms auth follows: formsauthentication.setauthcookie(userid, rememberme);
with can user id. , able user details when need them using user id.
with web service call like
objregistereduser = cmembership.getbyloginid(sloginid);
we know need upgrade site new apis service calls require users password this:
objregistereduser = cmembership.getbyloginidandpasword(sloginid, spassword);
for "remember" me function, best way remember password?
encrypt it, store in cookie, retrieve , decrypt?
we can't populate new profile without password.
any suggestions?
storing password data, encrypted go against best practices?
passwords should stored using one-way encryption algorithm (sha). means not able retrieve underlying password. have access hashed value.
Comments
Post a Comment