[Dovecot] PLAIN password scheme question

Dmitri V. Ivanov dima at intex.spb.ru
Thu Nov 13 20:08:45 EET 2008


Hi, ppls

There is some problem with using passwd-like file and plaintext
passwords within it.

Let's assume we have users speaking russian. They think and remember
their passwords also within russian words (they just not change 
keyboard layout before entering their passwords).

So if the user has password like ":jgf" (meaning "ass" in russian)
and passwords are stored into passwd-like file within {PLAIN} scheme
what will happen?

=====
user:{PLAIN}:jgf:1234:1234:....
=====

Isn't it a reason to implement something like {HEX} and why?

WBR
Dmitri Ivanov



More information about the dovecot mailing list