> A direct question arising from a security review :-
>
>  Using a datasource it is possible to remove the 'username',
>  'password' or at least encrypt them using someting like MD5

The Password can be digested.  See

  http://jakarta.apache.org/tomcat/tomcat-4.1-doc/realm-howto.html#Digested%20Passwords

-- 
Steve



---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to