2020-01-20, 06:57 AM
Quote:Encrypting the hashes is generally a better idea - the encryption key works as a pepper that can be changed/rotated (which cannot be done with salts).
I wasn't aware of the technical term "pepper" but it's exactly what I was suggesting.