On 02.01.11 11:33, Sam Varshavchik wrote:
> Download: http://www.courier-mta.org/download.php
>
> A few minor fixes.
>
> Changes:
>
> • Suppress logging the contents of a failed AUTH command in syslog, in 
> case it includes encoded passwords.

can this differentiate between incvalid usernames and invalid passwords?
If not, can this be turned off?

I know about potential security problems about revealed passwords, but I
would like to know when an attack is done against users' passwords

-- 
Matus UHLAR - fantomas, [email protected] ; http://www.fantomas.sk/
Warning: I wish NOT to receive e-mail advertising to this address.
Varovanie: na tuto adresu chcem NEDOSTAVAT akukolvek reklamnu postu.
I feel like I'm diagonally parked in a parallel universe. 

------------------------------------------------------------------------------
Protect Your Site and Customers from Malware Attacks
Learn about various malware tactics and how to avoid them. Understand 
malware threats, the impact they can have on your business, and how you 
can protect your company and customers by using code signing.
http://p.sf.net/sfu/oracle-sfdevnl
_______________________________________________
courier-users mailing list
[email protected]
Unsubscribe: https://lists.sourceforge.net/lists/listinfo/courier-users

Reply via email to