How to determine if existing password hash can be upgraded to a newer stronger algorithm in PHP

1 Answer

0 votes
$hashedPassword  = password_hash("1Xq3@d", PASSWORD_DEFAULT);

echo $hashedPassword . "<br />";
    
if (password_verify("1Xq3@d", $hashedPassword))
    if (password_needs_rehash($hashedPassword, PASSWORD_DEFAULT)) 
    {
        $newHashedPassword = password_hash($plaintextPassword, PASSWORD_DEFAULT);
        echo $newHashedPassword . "<br />";
        // Update the database with the new password hash
    }
 
/*
run: 

$2y$10$JTfFwa6bkw1rSW7rySKHJOqo79C/9852ZipHRdEwxwEfYPn/onYvO
  
*/  

 



answered Sep 14, 2017 by avibootz

Related questions

1 answer 171 views
1 answer 165 views
1 answer 29 views
1 answer 200 views
200 views asked Sep 14, 2017 by avibootz
1 answer 191 views
191 views asked Sep 14, 2017 by avibootz
1 answer 193 views
...