| || |
TestLink: data encryption methodology
TestLink stores test cases and results or some other related stuffs on database, if wanted. Also it stores the user account credentials in the database.
So here are the questions :
- user passwords are encrypted(as mentioned in the user manual) so what encryption methodology they use.
- Whether data(testing related data) stored in the database are encrypted. if so, what is the encryption methodology followed.
Looks like the password is encrpyted using a simple MD5 Hash
You probably want to use a 3rd party ldap authentication if security is an issue. MD5 is considered an old algorithm and has been compromised a while ago.
Last edited by dlai; 05-22-2014 at 08:11 AM.