I noticed in a packet capture today that Nexus login information (username & password) is sent over the net unencrypted. I'm sure the Nexus admins are aware of this, but I was just surprised and curious as to why you don't use SSL for logging in, given the obvious security problems associated with shouting your password across the Internet. I know SSL can be a pain to set up, especially for large sites.
When logging in, password is transmitted in cleartext
Started by
Non Sequitur
, Dec 08 2013 01:30 AM
No replies to this topic
#1
Posted 08 December 2013 - 01:30 AM



Sign In
Create Account
Back to top








