Details
-
Improvement
-
Resolution: Unresolved
-
Minor
-
None
-
6.3-milestone-1
-
None
-
Unknown
-
Description
In XWIKI-5261 we have added password salting. However, for increased security a couple of people have proposed adding a second layer of salting for passwords, using a secret salt stored in a configuration file (xwiki.preferences).
See more details in the comments of XWIKI-5261 (requires special privileges).
Attachments
Issue Links
- is related to
-
XWIKI-5261 Password hashes dumpable
- Closed