
June 10th, 2012, 01:02 PM
|
|
Moderator
|
|
Join Date: Jun 2002
Location: Raleigh, NC
|
|
|
But to answer your question: yes, you have to store the key somewhere in your code, otherwise there's no way the application can encrypt or decrypt anything. Which means part of the problem is making sure that there is no way for someone to hack the site and get at the source code where the key is stored.
|