• justdave%syndicomm.com's avatar
    Fix for bug 77473, bug 74032, and bug 85472: Passwords are no longer stored in… · 02226521
    justdave%syndicomm.com authored
    Fix for bug 77473, bug 74032, and bug 85472: Passwords are no longer stored in plaintext in the database.  Passwords are no longer encrypted with MySQL's ENCRYPT() function (because it doesn't work on some installs), but with Perl's crypt() function.  The crypt-related routines now properly deal with salts so that they work on systems that use methods other than UNIX crypt to crypt the passwords (such as MD5).  Checksetup.pl will walk through your database and re-crypt everyone's passwords based on the plaintext password entry, then drop the plaintext password column.  As a consequence of no longer having a plaintext password, it is no longer possible to email someone their password, so the login screen has been changed to request a password reset instead.  The user is emailed a temporary identifying token, with a link back to Bugzilla.  They click on the link or paste it into their browser and Bugzilla allows them to change their password.
    Patch by Myk Melez <myk@mozilla.org>
    r= justdave@syndicomm.com, jake@acutex.net
    02226521
Name
Last commit
Last update
Bugzilla Loading commit data...
contrib Loading commit data...
docs Loading commit data...
.cvsignore Loading commit data...
1x1.gif Loading commit data...
Bug.pm Loading commit data...
CGI.pl Loading commit data...
CHANGES Loading commit data...
README Loading commit data...
RelationSet.pm Loading commit data...
Token.pm Loading commit data...
ant.jpg Loading commit data...
booleanchart.html Loading commit data...
bug_form.pl Loading commit data...
bug_status.html Loading commit data...
buglist.cgi Loading commit data...
bugwritinghelp.html Loading commit data...
bugzilla.dtd Loading commit data...
changepassword.cgi Loading commit data...
checksetup.pl Loading commit data...
colchange.cgi Loading commit data...
collectstats.pl Loading commit data...
confirmhelp.html Loading commit data...
createaccount.cgi Loading commit data...
createattachment.cgi Loading commit data...
defparams.pl Loading commit data...
describecomponents.cgi Loading commit data...
describekeywords.cgi Loading commit data...
doeditparams.cgi Loading commit data...
doeditvotes.cgi Loading commit data...
duplicates.cgi Loading commit data...
editcomponents.cgi Loading commit data...
editgroups.cgi Loading commit data...
editkeywords.cgi Loading commit data...
editmilestones.cgi Loading commit data...
editparams.cgi Loading commit data...
editproducts.cgi Loading commit data...
editusers.cgi Loading commit data...
editversions.cgi Loading commit data...
enter_bug.cgi Loading commit data...
globals.pl Loading commit data...
help.html Loading commit data...
helpemailquery.html Loading commit data...
how_to_mail.html Loading commit data...
importxml.pl Loading commit data...
index.html Loading commit data...
localconfig.js Loading commit data...
long_list.cgi Loading commit data...
move.pl Loading commit data...
new_comment.cgi Loading commit data...
notargetmilestone.html Loading commit data...
post_bug.cgi Loading commit data...
process_bug.cgi Loading commit data...
processmail Loading commit data...
query.cgi Loading commit data...
queryhelp.cgi Loading commit data...
quicksearch.html Loading commit data...
quicksearch.js Loading commit data...
quicksearchhack.html Loading commit data...
quips.cgi Loading commit data...
relogin.cgi Loading commit data...
reports.cgi Loading commit data...
robots.txt Loading commit data...
sanitycheck.cgi Loading commit data...
show_activity.cgi Loading commit data...
show_bug.cgi Loading commit data...
showattachment.cgi Loading commit data...
showdependencygraph.cgi Loading commit data...
showdependencytree.cgi Loading commit data...
showvotes.cgi Loading commit data...
syncshadowdb Loading commit data...
token.cgi Loading commit data...
userprefs.cgi Loading commit data...
votehelp.html Loading commit data...
whineatnews.pl Loading commit data...
xml.cgi Loading commit data...