[ 
http://jira.codehaus.org/browse/WAGON-52?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel#action_98291
 ] 

Gustavo Almeida commented on WAGON-52:
--------------------------------------

Even storing encrypted password is considered insecure by some 
organizations/individuals, wagons should really ask for passwords when they can 
not be found in settings.xml (or other more secure store)

> wagon-webdav does not ask for auth password when <username>...</username> is 
> missing
> ------------------------------------------------------------------------------------
>
>                 Key: WAGON-52
>                 URL: http://jira.codehaus.org/browse/WAGON-52
>             Project: wagon
>          Issue Type: Improvement
>    Affects Versions: 1.0-beta-1
>         Environment: Linux and Windows
>            Reporter: Bernhard Wellhöfer
>
> We use as internal repository a WebDav server with BASIC authentication. Only 
> internal developers have access to this WebDav server and so e.g. internship 
> students do not have access to company jars.
> Now when the server definition in settings.xml does not contain the 
> <username>...</username> element, then wagon-webdav should ask once for the 
> missing password on the command line. Right now it just fails.

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators: 
http://jira.codehaus.org/secure/Administrators.jspa
-
For more information on JIRA, see: http://www.atlassian.com/software/jira


Reply via email to