[ 
https://issues.apache.org/jira/browse/SYNAPSE-376?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=12609101#action_12609101
 ] 

Andreas Veithen commented on SYNAPSE-376:
-----------------------------------------

When Synapse accesses the datasource it obviously needs to decrypt the 
password. Thus you also need to store the decryption key somewhere. To get real 
security (and not just security by obscurity), you would have to protect this 
key by password and ask the user to provide the password when starting Synapse. 
Is this what you suggest?

> Securing password in the datasource definition 
> -----------------------------------------------
>
>                 Key: SYNAPSE-376
>                 URL: https://issues.apache.org/jira/browse/SYNAPSE-376
>             Project: Synapse
>          Issue Type: Improvement
>            Reporter: indika priyantha kumara
>            Assignee: indika priyantha kumara
>             Fix For: FUTURE
>
>
> Currently ,passwords in the datasource definition are in clear text format. 
> (In synapse.properties). Those have to be encrypted. 

-- 
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.


---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to