6 messages in net.sourceforge.lists.courier-usersRe: [courier-users] Re: authdaemond a...
FromSent OnAttachments
Brian CandlerDec 4, 2000 10:51 am 
Sam VarshavchikDec 4, 2000 2:56 pm 
Brian CandlerDec 5, 2000 4:25 am 
Brian CandlerDec 5, 2000 8:18 am 
Brian CandlerDec 5, 2000 4:34 pm 
Brian CandlerDec 6, 2000 11:54 am 
Actions with this message:
Paste this link in email or IM:
Paste this link in email or IM:
Atom feed for this thread
Paste this URL into your reader:
Subject:Re: [courier-users] Re: authdaemond and ldapActions...
From:Brian Candler (B.Ca@pobox.com)
Date:Dec 5, 2000 4:34:22 pm
List:net.sourceforge.lists.courier-users

On Tue, Dec 05, 2000 at 05:24:13PM -0500, Sam Varshavchik wrote:

Note that if you use encrypted passwords, such as HASH-MD5, there's absolutely no issue with exposing them, since the cleartext password cannot be reasonably calculated, backwards from the hash, before the Universe ends.

With our users, probably at least 80% could be got in minutes by means of a dictionary attack.