understanding password bz_crypt
Hi all I am trying to understand how passwords are created and encrypted with a view to being able to decrypt them in .net. I found the following bit of documentation: sub bz_crypt ($) { 2 my ($password) = @_; 3 4 # The list of characters that can appear in a salt. Salts and hashes 5 # are both encoded as a sequence of characters from a set containing 6 # 64 characters, each one of which represents 6 bits of the salt/hash. 7 # The encoding is similar to BASE64, the difference being that the 8 # BASE64 plus sign (+) is replaced with ...
Password secure...is it secure?
Yes I just got this baby and I LOVE it! Its great. I have stored all my passwords inside of it (and yes made a few backups from them in secure locations) How secure is this program really? It uses blowfish to encrypt the database but how strong blowfish? 128bits? 256? 448? Anything else I should think about it? I have putted it and its databases inside PGPdisk just to play it safe...but then again Im a paranoid. :) -- Markus Jansson ************************************ My privacy related homepage and PGP keys: http://www.geocities.com/jansson_markus/ ********...
Secure Password Programming with .NET
Introduction Passwords - Handle them with care! They lock sensitive data behind them, which if broken into, could result in serious issues. Many people use the same password for different sites, which increases the vulnerability of data being misused. Applications with poor security implementations use ineffective password handling and storage mechanisms which makes matters worse. As a developer of applications that require some form of user authentication, you probably have to write code for storing/retrieving a user’s password from a data store and verifying it. This article takes you t...
How to secure database password? (was Re: Perl/DBI newbie: password storage / security question)
Hello, Many thanks to R. Joseph Newton, Motherofperls, essential quint and Chuck Fox for answering my questions, however it is still not what I was asking about. My previous posts were long and maybe unclear so I'll try to get straight to the point this time, adding more details at the bottom of my post. It is actually an extremely common situation: There is a CGI script written in Perl. It is a frontend to an SQL database. The script has to connect to the database so it has to send a password. I need that password to be secure. I am not interested in security through obscurity. T...
password hashing and decrypt the password again
Hi ALL, First I shoud encrypt a password and store it in my database(sql server 2000) and at a later time Decrypt the password using C#.net. If anyone knows about this problem.Please provide me your answers to how resolve this issue. Thanks, Ravi pagadala no need to decrypt the password,when user enters the password,again encrypt it and then match it just like strings,if it matches than user can login.... Amit Malhotrahttp://www.learnlinq.blogspot.com/...
Password, Password, Password
How can I login once per session and not have to reenter my root password every time I open YaST, etc. I believe in good security so I use strong passwords and I am also new to Linux which requires a lot of toying around so I have to enter my password over and over every session. -- OpenSourceRules ------------------------------------------------------------------------ -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 You could setup sudoers so you could call 'sudo /path/to/application' and have that NOT prompt you for a password. 'man sudoers' for more...
decrypt the password using MD5 algorithm in .net
hi,i encrypt my password using MD5 algorithm in .net. Now i decrypt my password using MD5?this is my code for encryptionMD5 Encryption*****************byte[] textBytes = System.Text.Encoding.Default.GetBytes(txtpwd.Text);try {System.Security.Cryptography.MD5CryptoServiceProvider cryptHandler;cryptHandler = new System.Security.Cryptography.MD5CryptoServiceProvider();byte[] hash = cryptHandler.ComputeHash (textBytes);string ret = ';foreach (byte a in hash) {if (a<16)ret += '0' + a.ToString ('x');elseret += a.ToString (&qu...
Lost user passwords with .Net security and SQL 2005 Express
Hi, I'm starting to use .net with web developer. I created a portal with .net security using sql 2005 express. I can create a user and get loged in automatically into the web site but when I logout, then I can't login again. It always says that the login is incorrect. I checked that the user exists with the Website Configuration Tool. I'm also able to ask for a forgotten password and then I get a new password by e-mail. But the new password won't work either. It seems as if the system would't keep the passwords correctly in the database or it didn't receive the passwords correctly f...
KLASSP Secure Proxy for password security
http://research.microsoft.com/pubs/69368/acsac06.pdf Hi All, See link above. Anyone know if this system has actually been implemented anywhere? I did some googling and didn't find anything. Appears to be a nice solution to thwart keyloggers on public computers. Cheers, Tom Tom C wrote: > http://research.microsoft.com/pubs/69368/acsac06.pdf > > Hi All, > > See link above. Anyone know if this system has actually been implemented > anywhere? I did some googling and didn't find anything. Interesting document. A few points that occur to me:...
Does password padding make your passwords more secure?
cc @SGGrc Hi Steve, d3adg0d (d3adg0d--at--gmail.com) has posted a good article on his blog in response to SN #303 regarding Password Padding: http://ob-security.info/?p=351 Based on e-mail correspondence I understand that he is a Pen Tester who is involved with password cracking and indeed has built a phenomenal GPU based cracking engine which currently will crack MD5's at 45.1 billion per second (http://ob-security.info/?p=274). That 100 billion per second quoted on the Haystacks page is probably not as far away as we would wish, indeed 2 of those systems would ...
Decryption algorithm from original password and encrypted password ?
I have passwords encrypted in the database and I wanted to decrypt them. I know one password which is SRSSRS and the encrypted password in the database is e9830a5640f8ecbf6657f34a1b093f20e1bdd8e0Can someone tell me how I can decrypt the rest of the passwords ? These encrypted passwords were created by Ruby on Rails project and I am don't know that technology to debug and find out the encryption algorithm or the encryption keyThanks nobody is going to be able to give you the algorithm or key if you dont already know it. it's also likely that decryption will be impossible. w...
(IN)SECURE Magazine from Net-Security (PDF download)
A little more light reading :-) Latest issue, #13: http://www.net-security.org/insecuremag.php (86 pages, with ads [not animated ads] - like a printed magazine) Archives of past issues: http://www.net-security.org/insecure-archive.php ISSUE 13 (September 2007) * Interview with Janne Uusilehto, Head of Nokia Product Security * Social engineering social networking services: a LinkedIn example * The case for automated log management in meeting HIPAA compliance * Risk decision making: whose call is it? * Interview with Zulfikar Ramzan, Senior Principal Re...
Security Now : Passwords and Cybercafe
Hello, My Name is Jean-sebastien OpdeBeeck, from Belgium. I'm new on this (great) newsgroup. I've just listen ALL SN podcats ... in some days ... cool and great quality. About password, and cybercafe, if you are afraid about key log. Why don't recommand two factor authentication ??? In my company we implement this (Vasco, RSA, SecureID, ...), so user has to put into his SSL VPN connection LOGIN and his TOKEN challenge+ PIN code. So you never can replay the sequence, because it's one time password. Yes I know, you need money for this, but maximum security i...
Security: Show Passwords MAJOR SECURITY RISK
Name: Mx Email: mklein01atgmaildotcom Product: Firefox Summary: Security: Show Passwords MAJOR SECURITY RISK Comments: The ability of anyone to view saved passwords is a major security risk. PASSWORDS should be ENCRYPTED WITH A USER SELECTED PASSWORD Browser Details: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-GB; rv:1.9.0.1) Gecko/2008070208 Firefox/3.0.1 From URL: http://hendrix.mozilla.org/ ...
Password Manager without a password
Name: Peter Thompson Email: peter_t_2k3athotmaildotcom Product: Firefox Summary: Password Manager without a password - Possible Security Risk Comments: As someone who uses Firefox a lot, I really love the program but I've noticed something just recently that I'd call in my opinion a possible security risk. When a user starts saving passwords for sites, by default the password manager isn't password protected. As a long time user of Firefox, for a while I did not have the password manager password protected and was shocked to find that I could reveal every passw...
Hi all I am trying to understand how passwords are created and encrypted with a view to being able to decrypt them in .net. I found the following bit of documentation: sub bz_crypt ($) { 2 my ($password) = @_; 3 4 # The list of characters that can appear in a salt. Salts and hashes 5 # are both encoded as a sequence of characters from a set containing 6 # 64 characters, each one of which represents 6 bits of the salt/hash. 7 # The encoding is similar to BASE64, the difference being that the 8 # BASE64 plus sign (+) is replaced with ...
Password secure...is it secure?
Yes I just got this baby and I LOVE it! Its great. I have stored all my passwords inside of it (and yes made a few backups from them in secure locations) How secure is this program really? It uses blowfish to encrypt the database but how strong blowfish? 128bits? 256? 448? Anything else I should think about it? I have putted it and its databases inside PGPdisk just to play it safe...but then again Im a paranoid. :) -- Markus Jansson ************************************ My privacy related homepage and PGP keys: http://www.geocities.com/jansson_markus/ ********...
Secure Password Programming with .NET
Introduction Passwords - Handle them with care! They lock sensitive data behind them, which if broken into, could result in serious issues. Many people use the same password for different sites, which increases the vulnerability of data being misused. Applications with poor security implementations use ineffective password handling and storage mechanisms which makes matters worse. As a developer of applications that require some form of user authentication, you probably have to write code for storing/retrieving a user’s password from a data store and verifying it. This article takes you t...
How to secure database password? (was Re: Perl/DBI newbie: password storage / security question)
Hello, Many thanks to R. Joseph Newton, Motherofperls, essential quint and Chuck Fox for answering my questions, however it is still not what I was asking about. My previous posts were long and maybe unclear so I'll try to get straight to the point this time, adding more details at the bottom of my post. It is actually an extremely common situation: There is a CGI script written in Perl. It is a frontend to an SQL database. The script has to connect to the database so it has to send a password. I need that password to be secure. I am not interested in security through obscurity. T...
password hashing and decrypt the password again
Hi ALL, First I shoud encrypt a password and store it in my database(sql server 2000) and at a later time Decrypt the password using C#.net. If anyone knows about this problem.Please provide me your answers to how resolve this issue. Thanks, Ravi pagadala no need to decrypt the password,when user enters the password,again encrypt it and then match it just like strings,if it matches than user can login.... Amit Malhotrahttp://www.learnlinq.blogspot.com/...
Password, Password, Password
How can I login once per session and not have to reenter my root password every time I open YaST, etc. I believe in good security so I use strong passwords and I am also new to Linux which requires a lot of toying around so I have to enter my password over and over every session. -- OpenSourceRules ------------------------------------------------------------------------ -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 You could setup sudoers so you could call 'sudo /path/to/application' and have that NOT prompt you for a password. 'man sudoers' for more...
decrypt the password using MD5 algorithm in .net
hi,i encrypt my password using MD5 algorithm in .net. Now i decrypt my password using MD5?this is my code for encryptionMD5 Encryption*****************byte[] textBytes = System.Text.Encoding.Default.GetBytes(txtpwd.Text);try {System.Security.Cryptography.MD5CryptoServiceProvider cryptHandler;cryptHandler = new System.Security.Cryptography.MD5CryptoServiceProvider();byte[] hash = cryptHandler.ComputeHash (textBytes);string ret = ';foreach (byte a in hash) {if (a<16)ret += '0' + a.ToString ('x');elseret += a.ToString (&qu...
Lost user passwords with .Net security and SQL 2005 Express
Hi, I'm starting to use .net with web developer. I created a portal with .net security using sql 2005 express. I can create a user and get loged in automatically into the web site but when I logout, then I can't login again. It always says that the login is incorrect. I checked that the user exists with the Website Configuration Tool. I'm also able to ask for a forgotten password and then I get a new password by e-mail. But the new password won't work either. It seems as if the system would't keep the passwords correctly in the database or it didn't receive the passwords correctly f...
KLASSP Secure Proxy for password security
http://research.microsoft.com/pubs/69368/acsac06.pdf Hi All, See link above. Anyone know if this system has actually been implemented anywhere? I did some googling and didn't find anything. Appears to be a nice solution to thwart keyloggers on public computers. Cheers, Tom Tom C wrote: > http://research.microsoft.com/pubs/69368/acsac06.pdf > > Hi All, > > See link above. Anyone know if this system has actually been implemented > anywhere? I did some googling and didn't find anything. Interesting document. A few points that occur to me:...
Does password padding make your passwords more secure?
cc @SGGrc Hi Steve, d3adg0d (d3adg0d--at--gmail.com) has posted a good article on his blog in response to SN #303 regarding Password Padding: http://ob-security.info/?p=351 Based on e-mail correspondence I understand that he is a Pen Tester who is involved with password cracking and indeed has built a phenomenal GPU based cracking engine which currently will crack MD5's at 45.1 billion per second (http://ob-security.info/?p=274). That 100 billion per second quoted on the Haystacks page is probably not as far away as we would wish, indeed 2 of those systems would ...
Decryption algorithm from original password and encrypted password ?
I have passwords encrypted in the database and I wanted to decrypt them. I know one password which is SRSSRS and the encrypted password in the database is e9830a5640f8ecbf6657f34a1b093f20e1bdd8e0Can someone tell me how I can decrypt the rest of the passwords ? These encrypted passwords were created by Ruby on Rails project and I am don't know that technology to debug and find out the encryption algorithm or the encryption keyThanks nobody is going to be able to give you the algorithm or key if you dont already know it. it's also likely that decryption will be impossible. w...
(IN)SECURE Magazine from Net-Security (PDF download)
A little more light reading :-) Latest issue, #13: http://www.net-security.org/insecuremag.php (86 pages, with ads [not animated ads] - like a printed magazine) Archives of past issues: http://www.net-security.org/insecure-archive.php ISSUE 13 (September 2007) * Interview with Janne Uusilehto, Head of Nokia Product Security * Social engineering social networking services: a LinkedIn example * The case for automated log management in meeting HIPAA compliance * Risk decision making: whose call is it? * Interview with Zulfikar Ramzan, Senior Principal Re...
Security Now : Passwords and Cybercafe
Hello, My Name is Jean-sebastien OpdeBeeck, from Belgium. I'm new on this (great) newsgroup. I've just listen ALL SN podcats ... in some days ... cool and great quality. About password, and cybercafe, if you are afraid about key log. Why don't recommand two factor authentication ??? In my company we implement this (Vasco, RSA, SecureID, ...), so user has to put into his SSL VPN connection LOGIN and his TOKEN challenge+ PIN code. So you never can replay the sequence, because it's one time password. Yes I know, you need money for this, but maximum security i...
Security: Show Passwords MAJOR SECURITY RISK
Name: Mx Email: mklein01atgmaildotcom Product: Firefox Summary: Security: Show Passwords MAJOR SECURITY RISK Comments: The ability of anyone to view saved passwords is a major security risk. PASSWORDS should be ENCRYPTED WITH A USER SELECTED PASSWORD Browser Details: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-GB; rv:1.9.0.1) Gecko/2008070208 Firefox/3.0.1 From URL: http://hendrix.mozilla.org/ ...
Password Manager without a password
Name: Peter Thompson Email: peter_t_2k3athotmaildotcom Product: Firefox Summary: Password Manager without a password - Possible Security Risk Comments: As someone who uses Firefox a lot, I really love the program but I've noticed something just recently that I'd call in my opinion a possible security risk. When a user starts saving passwords for sites, by default the password manager isn't password protected. As a long time user of Firefox, for a while I did not have the password manager password protected and was shocked to find that I could reveal every passw...
How to Encrypt a String to a String?
Hi Folks,I’m using Triple DES to encrypt a string… the output of the encryption is a byte array.However, I want to store the encrypted result as a string in a SQL Database and not as a byte array.(The reason I want to store it as a string, is to be able to copy & paste the result to a standalone windows form application to decrypt it...) I’ve tried taking the byte array, converting it into a string…And then reconverting it into a byte array for the decryption. This causes an error upon decryption…How can I convert the encrypted byte array into a string and back into a byt...
RSA Encryption
Here is my goal:1. Take a string2. Encrypt it 3. Pass it as a parameter in the QueryString4. Decrypt it The value starts as a string, then is converted to a byte[] and then encrypted. The resulting byte[] is converted to a string and send as a parameter. The recieving page decrypts the string (creates a byte[], decrypts to a new byte[], and the value is finally parsed for its values) I am using http://msdn.microsoft.com/library/default.asp?url=/library/en-us/cpref/html/frlrfsystemsecuritycryptographyrsacryptoserviceproviderclasstopic.asp with a small modification t...
.Net Connector 5.0 Encryption vs .Net Connector 5.1 Encryption
Is there any different between the AES Encryption in .Net Connector 5.0 and .Net Connector 5.1 ?? previously i using .Net Connector 5.0 to build my system. the encryption and descryption work fine. but after i upgrade to .Net Connector 5.1 ( uninstall the .Net 5.0 Connector, Install 5.1, delete the '<add assembly='MySql.Data, Version=5.0.7.0, Culture=neutral, PublicKeyToken=C5687FC88969C44D'/>' in webconfig, then add the 5.1 MySQL reference to the system) i cant encrypt the data that i previously decrypt when using .Net Connector 5.0. What is the problem that ca...
Encrypt a string in VBScript and .NET and make them compatible.
We have an ASP portal application and we want to write an addon in ASP.NET for it. The problem is they cannot share session state so we lose the logged in Session When going from ASP->ASP.NET I thought about Encrypting the Login/Password in the connection string and passing it to the new ASP.NET application which could then Decrypt it and attempt to log them in automatically. Also when they go back to the ASP Classic application it would log them in again as well using Decrypted Querystring Variable. Question #1: Has anyone ever done this Question #2: Does anyone have any exa...
encrypt a string on Windows/.net and decrypt it on Solaris/perl
Hi,Any advice on how best to encrypt some data in a Windows 2003/asp.net 1.1 web page and pass that data and decrypt it on a perl/apache web page running on Solaris?I'm guessing I might have to use a 3rd party sdk like this one but maybe there's some easier/free methods:www.pgp.com/products/sdkthanks,Bruce...
NET 1.1
Hello All, My shop has a problem. We are currently developing an ASP NET 1.1 application and we need to encrypt the connection string in the web.config. From all the reading I have been doing, the common solution seems to be to store the encrypted connection string information in the registry;However, due to our clients hosting the application, we are unallowed to do so. Is there a secure way to store the encrypted connection string in web.config(or anywhere) and be able to access it without allowing vulnerability to the encryption key? Thanks for the help!!! If you ne...
Encrypting Connection string
I've cruised the forums and found various options, such as this: // This method is used to encrypt the connection string private string EncryptConnectionString(string connectionString){ Byte[] b = System.Text.ASCIIEncoding.ASCII.GetBytes(connectionString); string encryptedConnectionString = Convert.ToBase64String(b); return encryptedConnectionString;} but, as a newbie, I'm not entirel clear where I put this. One post suggested putting it on my page load, but in that file I still have the password and login in the clear. I want to encypt/encode my login & password on my...
Encrypt a string
Is there a way to encrypt a string that gives a unique and different value each time but the decrypt will always return the same original value? Thanks in advance. Andy Den 9/22/2014 06:57, Andy Colmes skrev: > Is there a way to encrypt a string that gives a unique and different > value each time but the decrypt will always return the same original > value? > > Thanks in advance. > > Andy > Yes, but you will have to synchronize the keys in both ends. One way is to ensure that the server producing the encrypted key, and the client decrypting...
Encrypting Strings
Hi, I need to come up with a really simple licensing module for our application. Already been through the Microsoft built-in provider but they seem overly complicated. I was thinking about just having a 'highly protected' encryption and decryption strings using SHA1 and MD5 where our smaller licensing components would create a license and for our ASP.NET application it would simply 'decrypt' the key to figure out what to unlock. What is the easiest way to encrypt and decrypt a string? I am sure there is something like Key = Encryptor.Encrypt('String He...
encrypting a string
What the best class/method to use when encrypting/decrypting a string variable with symetric cryptography. (And, by 'best' I mean easiest to use). I want to set a cookie value and I don't want to user to be able to hack it too easilly. Cheers Martin'Be as smart as you can, but remember that it is always better to be wise than to be smart.'Alan Alda I would suggest using the System.Security.Cryptography.RijndaelManaged class. It implements the new AES algorithm that is pretty much the most secure symmetric algorithm available. I believe it is just as simple/hard to use as...
String and string?
Hi guys, I was wondering the difference between small letter string type and a capital letter String type. Does anyone know about this? Highly appreciate for your answers! Thankz! The 'proper' version is String, as it references the System.String class of the .NET Framework Class Library. The ability to use string is provided by C#, where it is an alias to String. Similarly, the 'proper' version of an integer is Int32, as it references System.Int32. The ability to use int is provided by C#, and the ability to use Integer is provided by VB.NET, and both int and Integer are aliases...
String and String[]
What will be the advantage of using myString: String[10] over myString: String Man wrote: > What will be the advantage of using > myString: String[10] > over > myString: String 'String[10]' is a fixed-length, statically allocated, Ansi-based ShortString. 'String' is a dynamic-length, dynamically allocated, reference counted, Ansi-based or Unicode-based (depening on Delphi version) Long string. Unless you absolutely need the static, fixed length nature of ShortString, such as in records that interact with external systems, you should stay ...
Encrypt String
Hi All; How can I use powerscript to encrypt string and put to the database? When I retrieve from the database, use the powerscript to unencrypt the encrypt string. Thanks in advance. Timey What database are you using? Does it have to be encrypted before it gets to the database? The reason I ask is most databases have a encrypt/decrypt function availible. Tyler <Tim> wrote in message news:65AABAFDDF3083A8002B12C585256D05.002B12FD85256D05@webforums... > Hi All; > > How can I use powerscript to encrypt string and put to the database? > When I retrieve f...
string() = string()
this code does not work (not instance of object) Dim Items(), Other() As String Items = New String() {'A','B','C'} Other = New String() {} Other = Items how can I get all the values ? angiras Hi, If I understand your requirement correctly, this should do it Dim Items() As String = {'A', 'B', 'C'} Dim Other(Items.Length - 1) As String Items.CopyTo(Other, 0) To more closely match you code above, but this will be less efficient Dim Items(), Other() As String ...
Hi Folks,I’m using Triple DES to encrypt a string… the output of the encryption is a byte array.However, I want to store the encrypted result as a string in a SQL Database and not as a byte array.(The reason I want to store it as a string, is to be able to copy & paste the result to a standalone windows form application to decrypt it...) I’ve tried taking the byte array, converting it into a string…And then reconverting it into a byte array for the decryption. This causes an error upon decryption…How can I convert the encrypted byte array into a string and back into a byt...
RSA Encryption
Here is my goal:1. Take a string2. Encrypt it 3. Pass it as a parameter in the QueryString4. Decrypt it The value starts as a string, then is converted to a byte[] and then encrypted. The resulting byte[] is converted to a string and send as a parameter. The recieving page decrypts the string (creates a byte[], decrypts to a new byte[], and the value is finally parsed for its values) I am using http://msdn.microsoft.com/library/default.asp?url=/library/en-us/cpref/html/frlrfsystemsecuritycryptographyrsacryptoserviceproviderclasstopic.asp with a small modification t...
.Net Connector 5.0 Encryption vs .Net Connector 5.1 Encryption
Is there any different between the AES Encryption in .Net Connector 5.0 and .Net Connector 5.1 ?? previously i using .Net Connector 5.0 to build my system. the encryption and descryption work fine. but after i upgrade to .Net Connector 5.1 ( uninstall the .Net 5.0 Connector, Install 5.1, delete the '<add assembly='MySql.Data, Version=5.0.7.0, Culture=neutral, PublicKeyToken=C5687FC88969C44D'/>' in webconfig, then add the 5.1 MySQL reference to the system) i cant encrypt the data that i previously decrypt when using .Net Connector 5.0. What is the problem that ca...
Encrypt a string in VBScript and .NET and make them compatible.
We have an ASP portal application and we want to write an addon in ASP.NET for it. The problem is they cannot share session state so we lose the logged in Session When going from ASP->ASP.NET I thought about Encrypting the Login/Password in the connection string and passing it to the new ASP.NET application which could then Decrypt it and attempt to log them in automatically. Also when they go back to the ASP Classic application it would log them in again as well using Decrypted Querystring Variable. Question #1: Has anyone ever done this Question #2: Does anyone have any exa...
encrypt a string on Windows/.net and decrypt it on Solaris/perl
Hi,Any advice on how best to encrypt some data in a Windows 2003/asp.net 1.1 web page and pass that data and decrypt it on a perl/apache web page running on Solaris?I'm guessing I might have to use a 3rd party sdk like this one but maybe there's some easier/free methods:www.pgp.com/products/sdkthanks,Bruce...
NET 1.1
Hello All, My shop has a problem. We are currently developing an ASP NET 1.1 application and we need to encrypt the connection string in the web.config. From all the reading I have been doing, the common solution seems to be to store the encrypted connection string information in the registry;However, due to our clients hosting the application, we are unallowed to do so. Is there a secure way to store the encrypted connection string in web.config(or anywhere) and be able to access it without allowing vulnerability to the encryption key? Thanks for the help!!! If you ne...
Encrypting Connection string
I've cruised the forums and found various options, such as this: // This method is used to encrypt the connection string private string EncryptConnectionString(string connectionString){ Byte[] b = System.Text.ASCIIEncoding.ASCII.GetBytes(connectionString); string encryptedConnectionString = Convert.ToBase64String(b); return encryptedConnectionString;} but, as a newbie, I'm not entirel clear where I put this. One post suggested putting it on my page load, but in that file I still have the password and login in the clear. I want to encypt/encode my login & password on my...
Encrypt a string
Is there a way to encrypt a string that gives a unique and different value each time but the decrypt will always return the same original value? Thanks in advance. Andy Den 9/22/2014 06:57, Andy Colmes skrev: > Is there a way to encrypt a string that gives a unique and different > value each time but the decrypt will always return the same original > value? > > Thanks in advance. > > Andy > Yes, but you will have to synchronize the keys in both ends. One way is to ensure that the server producing the encrypted key, and the client decrypting...
Encrypting Strings
Hi, I need to come up with a really simple licensing module for our application. Already been through the Microsoft built-in provider but they seem overly complicated. I was thinking about just having a 'highly protected' encryption and decryption strings using SHA1 and MD5 where our smaller licensing components would create a license and for our ASP.NET application it would simply 'decrypt' the key to figure out what to unlock. What is the easiest way to encrypt and decrypt a string? I am sure there is something like Key = Encryptor.Encrypt('String He...
encrypting a string
What the best class/method to use when encrypting/decrypting a string variable with symetric cryptography. (And, by 'best' I mean easiest to use). I want to set a cookie value and I don't want to user to be able to hack it too easilly. Cheers Martin'Be as smart as you can, but remember that it is always better to be wise than to be smart.'Alan Alda I would suggest using the System.Security.Cryptography.RijndaelManaged class. It implements the new AES algorithm that is pretty much the most secure symmetric algorithm available. I believe it is just as simple/hard to use as...
String and string?
Hi guys, I was wondering the difference between small letter string type and a capital letter String type. Does anyone know about this? Highly appreciate for your answers! Thankz! The 'proper' version is String, as it references the System.String class of the .NET Framework Class Library. The ability to use string is provided by C#, where it is an alias to String. Similarly, the 'proper' version of an integer is Int32, as it references System.Int32. The ability to use int is provided by C#, and the ability to use Integer is provided by VB.NET, and both int and Integer are aliases...
String and String[]
What will be the advantage of using myString: String[10] over myString: String Man wrote: > What will be the advantage of using > myString: String[10] > over > myString: String 'String[10]' is a fixed-length, statically allocated, Ansi-based ShortString. 'String' is a dynamic-length, dynamically allocated, reference counted, Ansi-based or Unicode-based (depening on Delphi version) Long string. Unless you absolutely need the static, fixed length nature of ShortString, such as in records that interact with external systems, you should stay ...
Encrypt String
Hi All; How can I use powerscript to encrypt string and put to the database? When I retrieve from the database, use the powerscript to unencrypt the encrypt string. Thanks in advance. Timey What database are you using? Does it have to be encrypted before it gets to the database? The reason I ask is most databases have a encrypt/decrypt function availible. Tyler <Tim> wrote in message news:65AABAFDDF3083A8002B12C585256D05.002B12FD85256D05@webforums... > Hi All; > > How can I use powerscript to encrypt string and put to the database? > When I retrieve f...
string() = string()
this code does not work (not instance of object) Dim Items(), Other() As String Items = New String() {'A','B','C'} Other = New String() {} Other = Items how can I get all the values ? angiras Hi, If I understand your requirement correctly, this should do it Dim Items() As String = {'A', 'B', 'C'} Dim Other(Items.Length - 1) As String Items.CopyTo(Other, 0) To more closely match you code above, but this will be less efficient Dim Items(), Other() As String ...
Programmatically creating DotNetNuke user passwords. When programmatically creating a DotNetNuke portal, the CreatePortal method API expects passwords that are already encrypted. In DotNetNuke, by default the passwords are encrypted using one way Triple DES algorithm. There is existing functionality in DotNetNuke that can be reused. MD5 Hash Generator This online tool allows you to generate the MD5 hash of any string. The MD5 hash can not be decrypted if the text you entered is complicated enough.