On 12/1/11 6:25 PM, Adrian Klaver wrote:
As I see it this a solution in search of a problem. An upgrade would be nice and
if that changes the password handling so much the better. In the meantime though
I do not see any thing critically wrong with the current system.  I too belong
to many Mailman lists and have never had a security issue.

neither have I, but sending plain text passwords out to everyone does seem like a bad idea -- and totally unnecessary.

Digging a bit deeper (and only a bit), I'm not sure that the "new" more secure password code had made it into a mailman release (despite it being blogged about 3 years ago...)

But it looks really easy to simply turn off the password reminders -- I suggest we do so.

-Chris




--
Christopher Barker, Ph.D.
Oceanographer

Emergency Response Division
NOAA/NOS/OR&R            (206) 526-6959   voice
7600 Sand Point Way NE   (206) 526-6329   fax
Seattle, WA  98115       (206) 526-6317   main reception

[email protected]

Reply via email to