[jadmin] jabberd14 'crypt' password storage in postgressql

Tomasz Sterna tomek at xiaoka.com
Sun Jun 3 09:24:53 CDT 2007


On sob, 2007-06-02 at 11:06 +0200, Thomas Merkel wrote:
> I think it can be a big security risk to store passwords in plaintext
> in
> the database. 

Would you rather like them to be send plaintext on the wire?

It's the choice:
- plaintext in DB, crypted on the wire
- crypted in DB, plaintext on the wire

Your choice is? :-)

-- 
Tomasz Sterna
Xiaoka Grp.  http://www.xiaoka.com/



More information about the JAdmin mailing list