• Toll-free  888-665-8637
  • International  +1 717-220-0012
Welcome Guest! To enable all features please Login or Register.

Notification

Icon
Error

Chris Dittmeier
#1 Posted : Friday, December 14, 2007 4:44:10 PM(UTC)
Chris Dittmeier

Rank: Member

Joined: 1/3/2004(UTC)
Posts: 1,497

What is the intention of the password hint/answer? Since complex passwords are normally suggested, what is expected input to these fields? Some sites offer standard questions, like favorite restaurant, town of birth, etc. to help identify you when you try to reset a password. BV emails the new password to the registered email address.
Chris
Sirius Programming

www.siriusprogramming.com
MitchA
#2 Posted : Friday, December 14, 2007 5:06:57 PM(UTC)
MitchA

Rank: Member

Joined: 3/3/2006(UTC)
Posts: 1,737

I'm glad YOU asked this. ....been wondering the same thing.
Optimists invent airplanes,
Pessimists buy parachutes.
Marcus
#3 Posted : Monday, December 17, 2007 10:05:29 PM(UTC)
Marcus

Rank: Member

Joined: 11/5/2003(UTC)
Posts: 1,786

Hint and answer were originally designed so that we could present customers with a challenge/response if they forgot their password and it was reversible encrypted or in cleartext. Late in the development cycle during a security review we realized that this could be an avenue of attack and it was not fully implemented. Clearly, we should be removing those fields from the registration page as they are not currently used but will most likely leave them on the admin side in case customers have used them to store other data.
Matt@9BallDesign
#4 Posted : Wednesday, October 1, 2008 8:23:36 AM(UTC)
Matt@9BallDesign

Rank: Member

Joined: 12/23/2003(UTC)
Posts: 909

marcus, I'm digging up this old post.

what's the proper method to remove these fields from the registration page in the current application without affecting any functionality?
Matt Martell


http://www.9balldesign.com - Web, Print, Graphic


http://www.martellhardware.com/ - Decorative & Builder's Hardware

------------------------------------------------
Marcus
#5 Posted : Thursday, October 23, 2008 1:37:43 PM(UTC)
Marcus

Rank: Member

Joined: 11/5/2003(UTC)
Posts: 1,786

style="display:none;"
Matt@9BallDesign
#6 Posted : Thursday, October 23, 2008 2:30:05 PM(UTC)
Matt@9BallDesign

Rank: Member

Joined: 12/23/2003(UTC)
Posts: 909

all I needed to know!

thanks!
Matt Martell


http://www.9balldesign.com - Web, Print, Graphic


http://www.martellhardware.com/ - Decorative & Builder's Hardware

------------------------------------------------
Forum Jump  
You cannot post new topics in this forum.
You cannot reply to topics in this forum.
You cannot delete your posts in this forum.
You cannot edit your posts in this forum.
You cannot create polls in this forum.
You cannot vote in polls in this forum.

©2024 Develisys. All rights reserved.
  • Toll-free  888-665-8637
  • International  +1 717-220-0012