[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [cobalt-users] Security?



> and typed my username and password in.
>
> Now it just happens that with this particular user, the password
> is the same
> as my siteadmin (long story) and the username is different.  He typed in
> admin as the username rather than hisdomainadmin and this is what
> happened.
>
> I'm guessing that you could use any domain on the server and, as
> long as you
> get the right username and password, you would be in?
>

yes you can go to any domain on a RaQ server and if you then put /admin and
use admin and password then you will get the server admin pages - chances of
a user having the same password as you - should be remote unless you use
your first name as the password - of course the user would also have to know
to use admin and not siteadmin which is what you told him right?

Gavin