[jadmin] jabberd14 'crypt' password storage in postgressql

Martel Valgoerad martel at post.pl
Tue Jun 12 10:57:56 CDT 2007


Oliver Block wrote:

> What I was thinking of is an ssl connection, which allows clear text transport 
> and and hashing on the server side. This seems to me the most user friendly 
> approach.

I don't have much experience in running different jabber servers myself but I 
have always assumed that's the case in most server scenarios.

Yet I must admit I already have been unpleasantly surprised when I discovered 
I was able to get unencrypted passwords out of ejabberd database as well.

> Oliver

-- 
Martel Valgoerad aka Michal Minicki | martel at aie.pl | http://aie.pl/martel.asc
=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
"Idleness is not doing nothing. Idleness is being free to do anything." --
Floyd Dell


More information about the JAdmin mailing list