5 ms·
Err... what's a plausible reason passwords would be restricted to 20 chars, other than being stored in plaintext in a char(20) field?
by kgrin 12y ago
Err... what's a plausible reason passwords would be restricted to 20 chars, other than being stored in plaintext in a char(20) field?
- 0942v8653 12y agoMaking sure you can't DDoS by sending gigabyte passwords for the server to hash. Of course 20 is seriously … overprotective.