On Mon, Feb 23, 2009 at 8:38 AM, Fernando P. <
I just noticed that when users register or login to my website (I use
restful_auth), their password gets printed out in the production.log
file. How can I prevent that? I consider this a major security issue.
SSL is used to prevent eavesdropping and passwords are stored encrypted
in DB by the way, but I never thought about log files.
Hi, please remember google is your friend:
a) Google is your friend
b) Api Documents is also a good resource
Note: If you search for password, you'll also find a reference for