View Issue Details

IDProjectCategoryView StatusLast Update
0005222SOGoWeb Preferencespublic2020-11-21 08:18
Reporterdragoangel Assigned To 
PrioritynormalSeveritymajorReproducibilityN/A
Status newResolutionopen 
Platform[Server] LinuxOSRHEL/CentOSOS Version7
Product Version5.0.1 
Summary0005222: Password policy settings for SQL backend
Description

If people use SQL backend for user authorization and allow SOGo Change password future SOGo will allow people to set any password user enter in SOGo even them obviously unsafe. With LDAP backend this can be handled by LDAP policy, but not with SQL one.

This was already mentioned in https://sogo.nu/bugs/view.php?id=1993 far ago, but maybe now this can be fixed via sogo.conf for sql backend or even for all backend with providing helper note about applied password policy on SOGo Preferences.

TagsNo tags attached.

Activities

There are no notes attached to this issue.

Issue History

Date Modified Username Field Change
2020-11-21 08:18 dragoangel New Issue