Sign Up

Sign Up to our social questions and Answers Engine to ask questions, answer people’s questions, and connect with other people.

Have an account? Sign In

Have an account? Sign In Now

Sign In

Login to our social questions & Answers Engine to ask questions answer people’s questions & connect with other people.

Sign Up Here

Forgot Password?

Don't have account, Sign Up Here

Forgot Password

Lost your password? Please enter your email address. You will receive a link and will create a new password via email.

Have an account? Sign In Now

You must login to ask a question.

Forgot Password?

Need An Account, Sign Up Here

Please briefly explain why you feel this question should be reported.

Please briefly explain why you feel this answer should be reported.

Please briefly explain why you feel this user should be reported.

Sign InSign Up

The Archive Base

The Archive Base Logo The Archive Base Logo

The Archive Base Navigation

  • SEARCH
  • Home
  • About Us
  • Blog
  • Contact Us
Search
Ask A Question

Mobile menu

Close
Ask a Question
  • Home
  • Add group
  • Groups page
  • Feed
  • User Profile
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Buy Points
  • Users
  • Help
  • Buy Theme
  • SEARCH
Home/ Questions/Q 64313
In Process

The Archive Base Latest Questions

Editorial Team
  • 0
Editorial Team
Asked: May 10, 20262026-05-10T18:46:13+00:00 2026-05-10T18:46:13+00:00

When designing user table what would be the must have fields from the security/user

  • 0

When designing user table what would be the must have fields from the security/user authentication point of view for a Web based Application (.NET and SqlServer 2005)

I came with with the following fields:

userID username -- preferably email passwordHash  onceUsePassword -- to indicate that the password should be changed after login alternativeContactEmail  userStatusID -- FK to a lookup table with statuses like: active, diabled etc  dateCreated dateUpdated lastPasswordUpdate lastLogon -- and then the rest like :forename, surname etc which are not of the interest in this question 

Am I missing something?

Is standard identity (INT) sufficient for userID or should the GUID be used instead (the userID is not going to be exposed anywhere)?

EDIT:

  • I am limited to the use of .NET 1.1 (don’t ask…)
  • The salt info will be merged with passwordHash
  • the account would be unlocked by sending a temporary, single use system generated password to the user email address (hence onceUsePassword field)
  • 1 1 Answer
  • 0 Views
  • 0 Followers
  • 0
Share
  • Facebook
  • Report

Leave an answer
Cancel reply

You must login to add an answer.

Forgot Password?

Need An Account, Sign Up Here

1 Answer

  • Voted
  • Oldest
  • Recent
  • Random
  1. 2026-05-10T18:46:13+00:00Added an answer on May 10, 2026 at 6:46 pm

    Why not just use the built-in SQL Membership Provider if you’re using SQL Server anyway? It’s much better than rolling your own since it’s been tested by a lot of people.

    In any case, you should think about adding a salt field your table.

    Salting

    Update: .NET 1.1? I guess that answers my question. Is your application for the consumption of the general public? If so, you might want to add a way for them to unlock their accounts via a secret question.

    • 0
    • Reply
    • Share
      Share
      • Share on Facebook
      • Share on Twitter
      • Share on LinkedIn
      • Share on WhatsApp
      • Report

Sidebar

Related Questions

I have a table view and when a user selects a cell I want
When designing a user interface for an application that is going to be used
Say you’re designing an application that, by requirement, allows a user the flexibility of
Sometime back while designing something that included user management, I was required to have
I'm designing a C# application Presentation ( web site + flex apps ) Business
We're designing a WPF / MVVM application that allows the user to search and
As a UI guy (coding and designing user interfaces) I often find myself in
Hi All, I'm designing a user control, briefly it contains an asp:hiddenfield control, i'm
Designing a new system from scratch. I'll be using the STL to store lists
While designing a table my colleague here says that I should avoid identity column

Explore

  • Home
  • Add group
  • Groups page
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Users
  • Help
  • SEARCH

Footer

© 2021 The Archive Base. All Rights Reserved
With Love by The Archive Base

Insert/edit link

Enter the destination URL

Or link to existing content

    No search term specified. Showing recent items. Search or use up and down arrow keys to select an item.