关于数据库密码散列加密(hash)

1、添加一组数据; 

private void btnAdd_Click(object sender, System.EventArgs e)
  {
   if ((txtNameAdd.Text != "") && (txtPwdAdd.Text!=""))
   {
    //new a dbconnection,数据库为db目录下的userdb.mdb
    string connstr = "Provider=Microsoft.Jet.OLEDB.4.0;Data Source="
     + Server.MapPath(@"./db/userdb.mdb")
     + ";Mode=Share Deny None;Persist Security Info=False";
    OleDbConnection conn = new OleDbConnection(connstr);
    conn.Open ();
    //检查是否用户名存在
    string sql = "SELECT * FROM [userinfo] WHERE [user_name]='" + txtNameAdd.Text + "'" ;
    OleDbCommand cmd = new OleDbCommand(sql,conn);
    OleDbDataReader dr = cmd.ExecuteReader();
     if (dr.Read() == true)
    {
     MsgBox("用户名存在!");
     return;
    }
    dr.Close ();
    
    //使用MD5 Hash算法进行散列加密
    MD5CryptoServiceProvider HashMD5 = new MD5CryptoServiceProvider();
    string newPwd = ASCIIEncoding.ASCII.GetString (HashMD5.ComputeHash( ASCIIEncoding.ASCII.GetBytes(txtPwdAdd.Text )));
    //将加密后的password添加如数据库中
    sql = "INSERT INTO [userinfo]([user_name],[user_pwd])"
     + "VALUES('" + txtNameAdd.Text + "','" + newPwd + "')";
    cmd.CommandText = sql;
    cmd.ExecuteNonQuery ();
    conn.Close();
    MsgBox("成功添加用户:" + txtNameAdd.Text + " 密码:" + txtPwdAdd.Text );
   }
  }

2、验证数据

private void btnCheck_Click(object sender, System.EventArgs e)
  {
   if ((txtNameCheck.Text != "") && (txtPwdCheck.Text!=""))
   {
    //new a dbconnection,数据库为db目录下的userdb.mdb
    string connstr = "Provider=Microsoft.Jet.OLEDB.4.0;Data Source="
     + Server.MapPath(@"./db/userdb.mdb")
     + ";Mode=Share Deny None;Persist Security Info=False";
    OleDbConnection conn = new OleDbConnection(connstr);
    conn.Open ();
    //根据用户名,读出密码
    string sql = "SELECT [user_pwd] FROM [userinfo] WHERE [user_name]='" + txtNameCheck.Text + "'";
    OleDbCommand cmd = new OleDbCommand(sql,conn);
    OleDbDataReader dr = cmd.ExecuteReader();
    if (dr.Read() == true)
    {
     //将输入密码进行散列加密,与读出密码进行比较
     MD5CryptoServiceProvider HashMD5 = new MD5CryptoServiceProvider();
     string newPwd = ASCIIEncoding.ASCII.GetString (HashMD5.ComputeHash( ASCIIEncoding.ASCII.GetBytes(txtPwdCheck.Text )));
     if (dr.GetValue(0).ToString() == newPwd)
     {
      MsgBox("通过验证!");
     }
     else
     {
      MsgBox("用户信息错误!");
     }
    }
    dr.Close ();
   }
  
  }

3、弹出信息

private void MsgBox(string msg)
  {
   Response.Write ("<script language='JavaScript'>window.alert('" + msg + "');</script>");
  }

  • 0
    点赞
  • 0
    收藏
    觉得还不错? 一键收藏
  • 0
    评论
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值