[MC] Re: MC passwords in images?

Bert Freudenberg bert at impara.de
Fri Nov 4 21:54:50 UTC 2005


Am 04.11.2005 um 22:22 schrieb Adrian Lienhard:

>
> On Nov 4, 2005, at 21:26 , Bert Freudenberg wrote:
>>
>> Besides, the username/password is transmitted over the internet  
>> unencrypted, using HTTP basic authorization, so you shouldn't use  
>> valuable passwords anyway. Also, squeaksource stores those plain- 
>> text passwords unencrypted.
>
> That's not correct. We decided to store a hash (SHA) of the  
> password in SqueakSource rather than plain-text.

I'm sorry, you're right. It was Smallwiki that used plain passwords.

- Bert -




More information about the Squeak-dev mailing list