[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cpx] Wishlist: forgotten password



At 07:04 PM 04/22/2005, you wrote:
How does CPX interact with a user that can't authenticate without opening up possibilities for security exploits? It seems the safe bet here is just to have your EU password reset by an authenticated DA or SA. no?

Many other systems (eBay, other mailing lists, etc.) can not of course provide you with a plain text password, but they do assign you a temporary password (when you click on a URL) and then you get into a change password dialog.

If you forget your eBay password, you aren't going to call eBay to reset it for you!!! They have a system in place to handle that... A safe and secure system (I hope!!)

Something for future consideration for a CPX enhancement?

It is always easier if you empower the end user to be able to do something (like in this case) rather than having to bother the DA or SA, which also can increase latency by 24 hours or more, until the DA/SA read their email...

Bill

======================================================================
This is <cpx@xxxxxxxxxxxxx>      <http://www.groupmail.org/lists/cpx/>
Before posting a question, please search the archives (see above URL).


Home | Main Index | Thread Index
Match: Format: Sort by:
Search: