[Mailman-Developers] Hashing member passwords in config.pck

Bob Puff bob at nleaudio.com
Sat Feb 12 18:36:29 CET 2005


... and then what happens when someone replies to the message, quoting the
whole message?  That "sensitive" URL is exposed.

-1.

Bob


---------- Original Message -----------
From: "Adrian Bye" <adrian at tasdevil.com>
To: "'Barry Warsaw'" <barry at python.org>, "'Thomas Hochstein'"
<ml at ancalagon.inka.de>
Cc: mailman-developers at python.org
Sent: Sat, 12 Feb 2005 13:08:55 -0400
Subject: RE: [Mailman-Developers] Hashing member passwords in config.pck

> > On Sat, 2005-02-12 at 05:33, Thomas Hochstein wrote:
> > 
> > > I don't think so. I'd prefer to change options 
> > *immediately*, without 
> > > having to wait until I get my mail (partly via UUCP).
> > 
> > I agree.
> 
> And without passwords, you don't have to.  Instead of a password to access
> member options, you access it via the custom URL at the footer of 
> every message. You can either save the URL in a password storage 
> someplace, or just refer to an older message in your mail.
> 
> Adrian
> 
> _______________________________________________
> Mailman-Developers mailing list
> Mailman-Developers at python.org
> http://mail.python.org/mailman/listinfo/mailman-developers
> Mailman FAQ: http://www.python.org/cgi-bin/faqw-mm.py
> Searchable Archives: http://www.mail-archive.com/mailman-users%40python.org/
> Unsubscribe:
http://mail.python.org/mailman/options/mailman-developers/bob%40nleaudio.com
------- End of Original Message -------



More information about the Mailman-Developers mailing list