NYCPHP Meetup

NYPHP.org

[nycphp-talk] Encrypt and decrypt to store in DB

Allen Shaw ashaw at polymerdb.org
Fri Aug 4 12:26:47 EDT 2006


+1 on this topic.  It's a good question. Anybody?

Mitch Pirtle wrote:
> I'd like to back this question up to the very beginning, and ask a
> more fundamental question that's been nagging at me for several
> days...
> 
> So a client comes up to you with an intent to require encrypted data
> in the database. This of course requires two-way encryption, which
> unfortunately means you gotta store the keys on the webserver to
> decrypt the data.
> 
> So what additional security does this actually accomplish, and is
> there a better approach?
> 
> -- Mitch
> _______________________________________________
> New York PHP Community Talk Mailing List
> http://lists.nyphp.org/mailman/listinfo/talk
> 
> NYPHPCon 2006 Presentations Online
> http://www.nyphpcon.com
> 
> Show Your Participation in New York PHP
> http://www.nyphp.org/show_participation.php
> 


-- 
Allen Shaw
Polymer (http://polymerdb.org)



More information about the talk mailing list