Hacker News new | past | comments | ask | show | jobs | submit login

What are the main reasons why a home brewed authentication solution is considered a bad idea?



Authentication is a difficult problem to solve if you're doing it for more than one app. In addition, many auth solutions aren't secure front to back (usually only on the front side). Developers tend to be poor at writing proper security solutions on the whole - so having independent security practicioners have input is worthwhile (eg: open source, or enterprise) IMHO.


You're not going to homebrew a more secure solution than the paid professors. It's a hard problem even to them.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: