I think encrypting by default is the right way to do it.

On 12/11/08, Florent Aide <[EMAIL PROTECTED]> wrote:
>
> Hi all,
>
> in r5847 I made sure all new quickstarted apps will have sha1 set as
> the default encryption system for passwords.
> I dislike the idea of letting unsuspecting users using identity and
> storing clear-text passwords in the database without knowing about it.
>
> I really prefer to have people learning by themselves how to obtain
> clear-text passwords than the other way round. Please don't hesitate
> to comment.
>
> Florent.
>
> >
>


-- 
Mark Ramm-Christensen
email: mark at compoundthinking dot com
blog: www.compoundthinking.com/blog

--~--~---------~--~----~------------~-------~--~----~
You received this message because you are subscribed to the Google Groups 
"TurboGears Trunk" group.
To post to this group, send email to [email protected]
To unsubscribe from this group, send email to [EMAIL PROTECTED]
For more options, visit this group at 
http://groups.google.com/group/turbogears-trunk?hl=en
-~----------~----~----~----~------~----~------~--~---

Reply via email to