"Nicola Canepa" <[email protected]> wrote:


>We are unable to upgrade to PF version 5 and above, since we rely on 
>being able to retrieve the password for created users.

When I'm elected Supreme Allied Commander of the Universe, :-) any
programmer who stores a human-readable password in *any* system (no
matter how trivial the access) will stand before a firing squad!

Seriously though, if your organization has to go through any type of
annual external audit like we do, storing passwords in human-readable
format is an instant failure.  Plus, I'm sure that there's a law in
some jurisdiction that prohibits this.  Better to modify your process
than continue using bad practices, and kudos to PF for forcing people
in the right direction by encrypting the password field...

-Arthur

-------------------------------------------------------------------------
Arthur Emerson III                 Email:      [email protected]
Network Administrator              InterNIC:   AE81
Mount Saint Mary College           MaBell:     (845) 561-0800 Ext. 3109
330 Powell Ave.                    Fax:        (845) 562-6762
Newburgh, NY  12550                SneakerNet: Aquinas Hall Room 11

------------------------------------------------------------------------------
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to