Simply take what the user provides, and use the select statement to grab only rows containing that hash with that userid; then there would be no security issue as any rows not matching said userid/pass would return no rows.

As the password is already stored encoded, you wouldn't be sending an unencoded password to the database, it wouldn't SEE the password unencoded...



I am a Web Development Contractor, I do not work for UBBCentral. I have provided free User to User Support since the beginning of these support forums.
Do you need Forum Install or Upgrade Services?
Forums: A Gardeners Forum, Scouters World
UBB.threads: UBBWiki, UBB Styles, UBB.Sitemaps
Longtime Supporter & Resident Post-A-Holic
VNC Web Services: Code Modifications, Upgrades, Styling, Coding Services, Disaster Recovery, and more!