Notice: In order to edit this ticket you need to be either: a Product Owner, The owner or the reporter of the ticket, or, in case of a Task not yet assigned, a team_member"

Task #512 (new)

Opened 13 years ago

Last modified 9 years ago

Review hidden password solution.

Reported by: jamoore Owned by: jamoore
Priority: minor Milestone: Unscheduled
Component: Security Version: 3.0-M3
Keywords: n.a. Cc:
Resources: n.a. Referenced By: n.a.
References: n.a. Remaining Time: n.a.
Sprint: n.a.

Description

Review #209. Perhaps instead of the (rather complicated) @Hidden solution, we should just move to a char[] for the password fields.

Change History (2)

comment:1 Changed 9 years ago by jburel

With the SSL approach, we probably need to close this ticket now.

comment:2 Changed 9 years ago by jmoore

J-M, no. This has to do with logging which may still need to be reviewed. There was also a case of passwords being printed to the web log.

Note: See TracTickets for help on using tickets. You may also have a look at Agilo extensions to the ticket.

1.3.13-PRO © 2008-2011 Agilo Software all rights reserved (this page was served in: 0.113325 sec.)

We're Hiring!