[TriLUG] apache passwd management strategies (subversion)

Joseph Tate dragonstrider at gmail.com
Thu Sep 22 17:13:06 EDT 2005


On 9/22/05, Rick DeNatale <rick.denatale at gmail.com> wrote:
> I never thought about how secure (or actually insecure) the
> Apache/HTTP password protocols were until this thread got me doing a
> bit of googling.
>

Just do it over https.  Doesn't solve everything, but a self signed
cert will at least keep the passwords from being sent over the clear.

--
Joseph Tate
Personal e-mail: jtate AT dragonstrider DOT com
Web: http://www.dragonstrider.com



More information about the TriLUG mailing list