Foswiki on GitHub is open for business! Next release meeting: Monday October 13, 1300Z

Item10494: htpasswd emails lost if changing to htdigest auth

Priority: CurrentState: AppliesTo: Component: WaitingFor:
Normal Closed Engine FoswikiUIPasswords doesn't detect that the existing password file might be in htpasswd format id:password:emails, so if the password method is changed to "MD5" which implements htdigest encoding, email addresses are interpreted as the password hash and overwritten by the new password when ResetPassword is used.

When reading in .htpasswd as a "MD5" htdigest formatted file, if the email is missing, and there is an @ in the password hash, use the password field to recover the emails.

-- GeorgeClark - 17 Mar 2011


ItemTemplate edit

Summary htpasswd emails lost if changing to htdigest auth
ReportedBy GeorgeClark
SVN Range
AppliesTo Engine
Component FoswikiUIPasswords
Priority Normal
CurrentState Closed
Checkins distro:19b60860ba92 distro:246bbbf0b99f
TargetRelease patch
ReleasedIn 1.1.3
Topic revision: r4 - 16 Apr 2011, KennethLavrsen
The copyright of the content on this website is held by the contributing authors, except where stated elsewhere. see CopyrightStatement. Creative Commons License