Resource Menu


RE : Security of LibreSource
Hello Rüdiger,

We use the Basic authentication system, so it's possible to retreive your password if you listen the tcp packet of the network.

But it's possible to use the SSL connection of Tomcat. Then any web access will be secured.

But there is no Synchronizer client that support SSL, except in our enterprise version.

Concerning the data stored in the database, it's impossible to retreive your real password. Only a hash is stored.

After it's up to you. But, on the web I always use another password.


Artenum team
posted by Sebastien Jourdain at Jan 11, 2006 12:22 PM