markjaroski at users
Feb 14, 2002, 10:06 AM
Post #1 of 1
[Bricolage-Commits] Made a couple of security related change surrounding dbi_pass.
Made a couple of security related change surrounding dbi_pass.
The config string is vulnerable for a couple of reasons, mainly 'cause it
gets stored in a world readable file. So I'm removing the pasword options
and prompting for the password in case the user doesn't want to either
put it in an environmental variable or pass it on the command line.