close ad
WARNING: Do Not Install the DREAMWEAVER CC 2017 or 2018 Update »
open ad
View Menu

Technical Support Forums

Free, outstanding support from WebAssist and your colleagues

WebAssist Sending Passwords in Email

Thread began 3/06/2010 6:49 pm by scott402634 | Last modified 3/16/2010 1:22 am by scott402634 | 1184 views | 26 replies

scott402634

I can see that WA has read this thread- so my original intent of pointing out what I believe to be a flawed registration process is achieved. If WA chooses not to make a change (to help those who like to be reminded of what their password is)- fine by me. There are many causes I might choose to champion- this isn't one of them. :-)

That aside- continuing on the general topic of registration security- I agree there is no simple answer. It is a rich, complex topic, with trade-offs on security, user-friendliness, & implementation costs/complexity.

At the most basic level, however- I think web developers need to help protect users from themselves. MOST users do not have good password strategies. Even when you use password mgmt software- I've seen users use them in ways that makes them even more vulnerable. If a sniffer were to pick up the email & password of a WA registration confirm- then someone uses that combination at a variety of other common sites, it wouldn't take long before they ultimately gain access to something (like an email account)- and with further sleuthing- use that as access to bank accts, etc.

The most basic security for any registration process, IMHO, would be that the original registration be done via SSL, passwords masked on the page, and passwords never sent in plain text via email. It should never be less than that.

See the latest from the W3C on the topic:

passwordsInTheClear-52

Best Regards,
Scott

Build websites with a little help from your friends

Your friends over here at WebAssist! These Dreamweaver extensions will assist you in building unlimited, custom websites.

Build websites from already-built web applications

These out-of-the-box solutions provide you proven, tested applications that can be up and running now.  Build a store, a gallery, or a web-based email solution.

Want your website pre-built and hosted?

Close Windowclose

Rate your experience or provide feedback on this page

Account or customer service questions?
Please user our contact form.

Need technical support?
Please visit support to ask a question

Content

rating

Layout

rating

Ease of use

rating

security code refresh image

We do not respond to comments submitted from this page directly, but we do read and analyze any feedback and will use it to help make your experience better in the future.

Close Windowclose

We were unable to retrieve the attached file

Close Windowclose

Attach and remove files

add attachmentAdd attachment
Close Windowclose

Enter the URL you would like to link to in your post

Close Windowclose

This is how you use right click RTF editing

Enable right click RTF editing option allows you to add html markup into your tutorial such as images, bulleted lists, files and more...

-- click to close --

Uploading file...