[jboss-dev-forums] [Design of POJO Server] - Re: Masking passwords in logs

mmoyses do-not-reply at jboss.com
Fri Oct 10 11:55:14 EDT 2008


Adrian,
the problem is that datasources and JCA login modules are not the only place where passwords are in plain text. There are some mbeans that don't provide a means for encryption, like SuckerPassword from messaging-service.xml, suckerPassword from messaging-jboss-beans.xml or Password from mail-service.xml.


View the original post : http://www.jboss.com/index.html?module=bb&op=viewtopic&p=4181560#4181560

Reply to the post : http://www.jboss.com/index.html?module=bb&op=posting&mode=reply&p=4181560



More information about the jboss-dev-forums mailing list