Re: [PROPOSED] password_hash RFC - Implementing simplified password hashing functions
| From: | Alex Aulbach | Date: | Mon, 16 Jul 2012 14:28:19 +0000 |
| Subject: | Re: [PROPOSED] password_hash RFC - Implementing simplified password hashing functions | ||
| References: | 1 2 3 4 5 6 7 8 9 10 11 12 13 14 | Groups: | php.internals |
| Request: | Send a blank email to internals+get-61308@lists.php.net to get a copy of this message | ||
2012/7/16 Andrew Faulds <ajfweb@googlemail.com>:
> We shouldn't neuter the language because some stupid people might do
> stupid people. Use appropriate error handling, not inappropriate error
> handling because it might catch someone out who has a poorly
> configured server.
I think it's not neutering, it's extending to a new level. Which is in
the beginning always uncomfortable. :)
And I think it depends on what architecture-features PHP should
follow. E. g. simpleness or security (security means often simpleness)
or ... or ...?
--
Alex Aulbach