> It will prevent the username:password pair from being easily > snpooped. Minimally this would compromise email, which as you say is > inherantly insecure, but howmany of your users have the same username > password pair for other things too (like the plan9 passowrd you wish > to protect).
where would this happen? (the second case is not a concern here. we use seperate secret and passwords.) - erik