(PHP 7 >= 7.2.0)
sodium_crypto_pwhash_str_verify — Verifies that a password matches a hash
$hash
, string $password
) : boolChecks that a password hash created using sodium_crypto_pwhash_str() matches a given plain-text password. Note that the parameters are in the opposite order to the same parameters in the similar password_hash() function.
hash
password_hash() が作ったハッシュ。
password
ユーザーのパスワード。
Returns TRUE
if the password and hash match, or FALSE
otherwise.
注意:
Hashes are calculated using the Argon2ID algorithm, providing resistance to both GPU and side-channel attacks.