Le Lundi 21 Novembre 2005 16:34, Afternoon a écrit :
> On 21 Nov 2005, at 15:26, Adrian Holovaty wrote:
> > There'd be no way of knowing whether the incoming password were
> > plaintext vs. encrypted, because any character is allowed in a
> > password.
>
> I would assume it's always plaintext. I've never seen anything where
> you have to encrypt the password yourself first. Take out the message
> and nobody would even think about it.
>

+1. I also never saw a soft where the end user had to know about SHA or MD5 
encryption (which are rather complicated even if you are a devlopper).

Reply via email to