LDAP Bind Pass not Hashed in config
-
should the bind password be hashed for security in config.xml?
-
Yeah, I think so, too. There are some security flaws if you do not encrypt the config file like having the WLAN Key in the config in plain text…
-
You can't hash things the system must have in plaintext in order to function.
http://doc.pfsense.org/index.php/Why_are_some_passwords_stored_in_plaintext_in_config.xml%3F
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.