14 - Hash and Compare Passwords Synchronously - Information Security with HelmetJS - freeCodeCamp
Ganesh H
In some contexts, we may also need to use synchronous hashing, especially if the following functionality relies on the results. Thankfully, bcrypt also provides a synchronous version of it's hash and compare functions.
Link to Challenge : https://www.freecodecamp.org/learn/information-security/information-security-with-helmetjs/hash-and-compare-passwords-synchronously Written Guide: https://www.notion.so/ganeshh123/Hash-and-Compare-Passwords-Synchronously-a41baf3943d947faa8ae9700cb2b11ef
Full Playlist for this course : https://www.youtube.com/playlist?list=PLhGp6N0DI_1TeEsQOdf1JmV8PnkQfEpQ4 All Writen Guides for this course : https://www.notion.so/ganeshh123/8ba82d9d1ff84c4583d6e9418ebe426b All My Tutorials can be found at : https://www.notion.so/Tutorials-Ganesh-H-293ea420d34a464f9a1907e0405b5f26
00:00 - Introduction 00:10 - When might we want to use Synchronous Methods? 00:32 - Hashing Synchronously - bcrypt.hashSync() Generates a hash for the given input with the number of rounds specified. https://www.npmjs.com/package/bcrypt#to-hash-a-password-1 02:22 - Checking passwords Synchronously - bcrypt.compareSync() Checks that the given hash (second argument) is valid for the given input (first argument). The number of salt rounds can be obtained from the hash. https://www.npmjs.com/package/bcrypt#to-check-a-password-1 04:22 - Challenge Solution
-————————————————————————————————————- HelmetJS is a type of middleware for Express-based applications that automatically sets HTTP headers to prevent sensitive information from unintentionally being passed between the server and client. While HelmetJS does not account for all situations, it does include support for common ones like Content Security Policy, XSS Filtering, and HTTP Strict Transport Security, among others. HelmetJS can be installed on an Express project from npm, after which each layer of protection can be configured to best fit the project.
freeCodeCamp (also referred to as “Free Code Camp”) is a non-profit organization that consists of an interactive learning web platform, an online community forum, chat rooms, online publications and local organizations that intend to make learning web development accessible to anyone. Beginning with tutorials that introduce students to HTML, CSS and JavaScript, students progress to project assignments that they complete either alone or in pairs. Upon completion of all project tasks, students are partnered with other nonprofits to build web applications, giving the students practical development experience.
freeCodeCamp (also referred to as “Free Code Camp”) is a non-profit organization that consists of an interactive learning web platform, an online community forum, chat roo ... https://www.youtube.com/watch?v=gvjwdwDNmaI
19913394 Bytes