Can someone give me a brief overview of how passwords and login are made secure in CE? I see salts and hashing may be involved, as well as the authlogic plugin, but I haven't been able to find clear documentation on details.
We've have had a little concern from users about password security -- mostly just that the password they use to log in could be stolen and used for other sites if it is one of their common passwords. We're not using SSL as our site's data isn't anything very important (financial data, etc.), and it seems there would be extra cost and effort in setting up SSL. -- You received this message because you are subscribed to the Google Groups "CommunityEngine" group. To post to this group, send email to [email protected]. To unsubscribe from this group, send email to [email protected]. For more options, visit this group at http://groups.google.com/group/communityengine?hl=en.
