Skip to main content

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] [List Home]
Re: [dtp-dev] a critical security bug

Also I guess this scenario is applicable to any use case where passwords are handled
so will be good to have a Eclipse platform wide policy / mechanism.

in simple words handball to platform guys !!

Anthos
On 07/11/2006, at 8:38 AM, Anil Samuel wrote:

Rob,

vendor's DB). The information in the profile is what is used when opening
connections and is encrypted when saved to the file system.

At Oracle, with Secure-by-default principle, we would have security issue with this when it is goes for assessment. Why dont we use the above-said mechanism to encrypt even this password ? That way it wud be consistent too.

Regards
Anthos

_______________________________________________
dtp-dev mailing list
dtp-dev@xxxxxxxxxxx
https://dev.eclipse.org/mailman/listinfo/dtp-dev



Back to the top