/[soft]
ViewVC logotype

Revision 43


Jump to revision: Previous Next
Author: buchan
Date: Wed Nov 3 09:17:19 2010 UTC (13 years, 5 months ago)
Changed paths: 1
Log Message:
Use a generated UUID stored in a cookie, instead of the session key, as a portion 
of the encryption key we use to encrypt the password for storage in the session.

It should now be more or less impossible for an attacker to get the password, as
they need access to the browser and the server.


Changed paths

Path Details
Directoryidentity/CatDap/trunk/lib/CatDap/Controller/user.pm modified , text changed

  ViewVC Help
Powered by ViewVC 1.1.30