RE: [PHP-DB] Confirmation e-mail
| From: | Ruprecht Helms | Date: | Sun, 09 Feb 2003 19:51:16 +0000 |
| Subject: | RE: [PHP-DB] Confirmation e-mail | ||
| References: | 1 | Groups: | php.db php.general php.windows |
| Request: | Send a blank email to php-general+get-134965@lists.php.net to get a copy of this message | ||
Hi Davy Obdam,
>[...]
> My question is what would be the best approach to achieve this? How is
> this usualy done?
Storing the password in encrypted form in a database. The confirmationmail
you can write with the normal mailcommand using addslashes. The securest way
if the password was randomly generated is to presend the resultpage via a
ssl-connection and without sending a mail or the mail must be protected.
So a hacker can't sniff the password.
Regards,
Ruprecht
----------------------------------
Ruprecht Helms IT-Service und Softwareentwicklung
Tel/Fax.: +49[0]7621 16 99 16
Homepage: http://www.rheyn.de
email: info@rheyn.de
----------------------------------