[TYPO3-dev] Password handling (Regarding youngest security issues)

Steffen Kamper info at sk-typo3.de
Fri Nov 14 17:46:23 CET 2008


Hi,

yes, it sounds good.
Anyway we have an encryptionKey, which should be mandantory while 
install (may be create one from url as default), this can be used for 
encryption too: md5(password + encryptionKey) so it should be unique for 
every install instance.

vg Steffen




More information about the TYPO3-dev mailing list