Hacker News new | ask | show | jobs
by jimktrains2 4034 days ago
SRP (e.g. TLS-SRP) doesn't require the server to have the plaintext password.

[0] http://en.wikipedia.org/wiki/Secure_Remote_Password_protocol

1 comments

The guy I was replying to was arguing against SRP and proposing his own ad-hoc solution.