엑

do not use password() in your own applications.

· 2011-01-26 (수) 02:38:54 · 1882 · 1
http://dev.mysql.com/doc/refman/5.1/en/encryption-functions.html#function_password

The PASSWORD() function is used by the authentication system in MySQL Server; you should not use it in your own applications. For that purpose, consider MD5() or SHA1() instead. Also see RFC 2195, section 2 (Challenge-Response Authentication Mechanism (CRAM)), for more information about handling passwords and authentication securely in your applications.

대강 password() 함수를 쓰지 말고
md5()나 sha1()을 써라"는 뜻.
|

댓글 1개

뒷 부분을 빼먹으신듯... 뒷 부분에 그 까닭이 나옵니다.

Important
Statements that invoke PASSWORD() may be recorded in server logs or in a history file such as ~/.mysql_history, which means that plaintext passwords may be read by anyone having read access to that information. See Section 5.3.2, “Password Security in MySQL”.

중요!
PASSWORD()를 실행하는 sql 구문이 서버의 로그 파일이나 '~/.mysql_history'와 같은 히스토리 파일에 기록될 가능성이 있습니다. 그것은 로그 파일이나 히스토리 파일에 접근 권한이 있는 누군가에 의해 암호화되지 않은 패스워드가 읽혀질 가능성이 있음을 의미합니다. 5.3.2 섹션 "MySQL에서의 패스워드 보안"을 참조하세요.

영어 부분을 긁어왔더니 댓글입력에서 지워지는 바람에 다시 번역해서 올립니다...
댓글을 작성하시려면 로그인이 필요합니다.

자유게시판

203,006건
+
제목 글쓴이 날짜 조회
11-02-21 조회 2,500
11-02-18 조회 2,919
11-02-16 조회 2,426
11-02-15 조회 2,417
11-02-14 조회 2,511
11-02-14 조회 1,897
11-02-11 조회 1,952
11-02-11 조회 1.1만
11-02-09 조회 2,517
11-02-08 조회 3,611
11-02-08 조회 1,808
11-02-03 조회 2,462
11-01-29 조회 2,485
11-01-29 조회 3,725
11-01-29 조회 1,899
11-01-26 조회 1,883
11-01-23 조회 3,050
11-01-19 조회 2,361
11-01-19 조회 2,903
11-01-18 조회 2,612