I've seen on many sites in the registration page that the password should have also a maximum length (between 15 and 100 characters). Except for DDOS attacks, is there a reason for this rule, giving the fact that the password will be hashed and only the hash will be stored?

Mike Ounsworth
  • 59,005
  • 21
  • 158
  • 212
Buda Gavril
  • 265
  • 1
  • 2
  • 6

0 Answers0