On 12/8/19 7:11 AM, Thomas Eckardt wrote:
Is there anyone else, who needs permanently to show authentication information multiple times in unsecured plain text?

At a previous employer and currently on my home mail server, I generate Authentication Failure reports daily.  And like Mr. Post, I am using $main::AUTHLogUser = 1; as a driver for those reports.

I don't necessarily need username logged though, but I wouldn't complain.

This gives me and my previous employer visibility as to what type of passwords that the current generation of bots are using and to be proactive on changing passwords of end users if things are getting a bit to close to real passwords (Case was incorrect or there was a number missing, etc).

My previous employer made the statement that, we wouldn't be in the IT position if we couldn't be trusted with sensitive information.

Doug



_______________________________________________
Assp-test mailing list
Assp-test@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/assp-test

Reply via email to