[josm-dev] shocking - unsecure password sending!

Ævar Arnfjörð Bjarmason avarab at gmail.com
Sun Sep 27 15:41:36 BST 2009


On Sun, Sep 27, 2009 at 2:25 PM, Karl Guggisberg
<karl.guggisberg at guggis.ch> wrote:
> just wondering whether the OSM API already supports digest authentication.
> If JOSM wanted to use it, could we already work on it or would we have to
> wait for the servers to support it?

TomH via IRC on #osm-dev: "we can't do it and are unlikely ever to do
so as it requires the passwords to be held in plain text on the
server".




More information about the josm-dev mailing list