[TYPO3-project-4-3] Making RSA Auth default login method?

Patrick Gaumond gaumondpatrick-s-p-a-m at hotmail-sp-a-m.com
Tue May 5 03:50:46 CEST 2009


Francois Suter wrote:
> Thanks for your detailed explanations. This new auth method sounds 
> really good.
> 
> I agree that it would be ideal if this could be made the default, but 
> the risk of being locked out of an existing BE because openssl is not 
> installed is not good. For new installs, it seems ok, especially if we 
> can provide a check for it, as already mentioned by others.

If security by default is a real priority then "joh316" should be 
addressed first...

I'm a bit reluctant to force RSA Auth. A paragraph about security into 
"install.txt" would be a simple alternative. Maybe mentioning that TYPO3 
version 4.4 will make RSA Auth the default could set the future playground.

My 2 CAN cents.

Patrick


More information about the TYPO3-project-4-3 mailing list