[kmail2] [Bug 315954] LDAP password stored in clear text

Michael Reiher redm at gmx.de
Mon Mar 18 14:33:13 GMT 2013


https://bugs.kde.org/show_bug.cgi?id=315954

--- Comment #10 from Michael Reiher <redm at gmx.de> ---
Ok yes, maybe allow saving to file, but you should never ever store it in clear
text on disk. Keep in mind that not everybody understands the technical details
of saving passwords, not necessarily even what clear text means. And actually
nobody should need to care. There will be people not fully understanding the
question, and then ending up with keeping a cleartext password. At least put a
big fat warning, but still...  So, IMHO, don't keep it or hash and salt it.
Just my 2ct on this.

Oh, and with remove I meant remove after migration to KWallet.

-- 
You are receiving this mail because:
You are the assignee for the bug.



More information about the Kdepim-bugs mailing list