    Best Practice - backend admin

      want to provide a back end log in, any tip/advise - Should I -
      a. Put user name and passwords in a separate database for logging in vs actual data database?
      b. How is .htaccess used in this case?
      c. Any suggestions tips?