The salt module allows for Drupal passwords to be 'salted' - an internal string is appended to the password prior to storage - making them less prone to dictionary attacks, rainbow tables and the like.

This module currently stores the salted password in the database. Consequently, disabling this module or changing the salt at any time will require users with salted passwords to recover their passwords.

Furthermore, Drupal by default includes the password for newly registered users within the welcome e-mail. It is recommended that the welcome e-mail template be edited to remove this (unsalted) password. The user will be able to use the one-time login link and select his own (salted) password.

Note: Drupal7 has greatly improved password storage. This module will likely be unneeded in the future.

Downloads

Recommended releases

Version Downloads Date Links
6.x-1.1-beta2 tar.gz (7.56 KB) | zip (8.92 KB) 2010-Nov-28 Notes

Development releases

Version Downloads Date Links
6.x-1.x-dev tar.gz (7.48 KB) | zip (8.66 KB) 2011-Feb-25 Notes

Project Information


Maintainers for Salt

  • Zen - 9 commits
    last: 1 year ago, first: 4 years ago

Issues for Salt

To avoid duplicates, please search before submitting a new issue.
All issues
Bug reports
Oldest open issue: 9 Dec 07