[Opensource] passwd in cookie

Michael Rimov rimovm at centercomp.com
Wed Oct 9 23:22:29 PDT 2002


At 08:43 PM 10/9/2002 -0700, you wrote:
>have any implementations changed expresso to write a "digest" key instead 
>of the password in the cookie?

No, we still only encrypt it.  It would require a bit of work to the User 
interface to get it to work... I'd like to possibly hold off until I branch 
CVS for the 5.0.1 release and then potentially consider what you're 
suggesting for the 5.1.0 release.

What do you think?
                                         -Mike





More information about the Opensource mailing list