[TYPO3-project-4-3] t3sec_saltedpw as sysext?

Michael Stucki michael at typo3.org
Tue Apr 28 13:29:02 CEST 2009


Hi Masi,

Martin Kutschker schrieb:
> Michael Stucki schrieb:
>> So what should be the default storage?
>> a) Plaintext (like now)
>> b) MD5
>> c) Salted Hash
>>
>> 1) for FE
> 
> Do we need JS for a) and b)? Or can I use SSL with a plain text password
> transmission? Anyway, if I had to choose between b) and c) I'd choose c).

We need JS for MD5 and salted hash. In case of a challenge-response 
authentication, even plaintext will require JS on the client side.

- michael
-- 
Use a newsreader! Check out
http://typo3.org/community/mailing-lists/use-a-news-reader/


More information about the TYPO3-project-4-3 mailing list