On Sun, Aug 12, 2012 at 9:03 AM, Christian Mueller <mcrmc...@gmail.com>wrote:

> I solved https://jira.codehaus.org/browse/GEOS-5256 on 2.2.x and 2.3.x.
> The detailed concept is described in the user guide, section "upgrading".
>
> Some thoughts about 2.3.x.  I would like to have a migrated security
> directory for fresh installations. The default master password would be
> "geoserver". During startup, the security subsystem tries to open the key
> store using "geoserver". If this is possible, the subsystem generates a new
> master password and executes a master password change and creates a file
> containing the new master password.
>

I'm + 1on having a migrated security directory on trunk.

At the same time, I'm not sure about making changes to the default password
if we find it's "geoserver". We are already warning the
admin that the password is unsafe, but imho we should not replace the admin
will/judgement about changing it, it
should not be something automatic

Cheers
Andrea

-- 
==
Our support, Your Success! Visit http://opensdi.geo-solutions.it for more
information.
==

Ing. Andrea Aime
@geowolf
Technical Lead

GeoSolutions S.A.S.
Via Poggio alle Viti 1187
55054  Massarosa (LU)
Italy
phone: +39 0584 962313
fax:   +39 0584 962313
mob:   +39  339 8844549

http://www.geo-solutions.it
http://twitter.com/geosolutions_it

-------------------------------------------------------
------------------------------------------------------------------------------
Live Security Virtual Conference
Exclusive live event will cover all the ways today's security and 
threat landscape has changed and how IT managers can respond. Discussions 
will include endpoint security, mobile security and the latest in malware 
threats. http://www.accelacomm.com/jaw/sfrnl04242012/114/50122263/
_______________________________________________
Geoserver-devel mailing list
Geoserver-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/geoserver-devel

Reply via email to