[JDEV] Account information storage, plaintext?

Andrew Sayers andrew-list-jabber-jdev at ccl.bham.ac.uk
Fri Sep 12 16:04:39 CDT 2003


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

I can't speak for jabberd, but other popular programs (e.g. pppd,
fetchmail) store passwords in plaintext, readable only by a specified
user.  The theory is that if someone can get read access to files they
aren't supposed to, they'll get your password one way or other anyway.

	- Andrew
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (GNU/Linux)
Comment: The following is method of proving my identity.  For more information, see http://www.gnupg.org.  E-mail {andrew-go-away at ccl.bham.ac.uk} if you don't want this.

iD8DBQE/YjTlUjUCivGf+MsRAqQsAJwK3ojdtRZGQ/5pu+ZTizL87xHzBwCcCmlH
KFMJOHLK7ocuulC104CYutk=
=1Lxb
-----END PGP SIGNATURE-----



More information about the JDev mailing list