Quote:
Originally Posted by GrouchyAdmin
It's gonna be a config var. Just keeps someone from getting it easily if someone gets a hold of a table dump. Kinda.. pointless, in my opinion, but, hey.
|
hope so, and hoping it's a var/key that's readable cos when nats is not installed on the same server as say a support site, it's kinda hard to do include a nats file to be able to decrypt the email address.
Still, so long as a custom script could be made on the nats install to include the nats stuff to be able to decrypt the passwords, then it's all work-aroundable.
However, I'm with you - kinda pointless when you have mysql locked down to non-authorised IPs, which everyone should have anyway.