------=_NextPart_000_0013_01C37A59.1EEDE110
Content-Type: text/plain;
charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
Hi,
=20
I'm not sure if this is the appropriate forum to raise this issue, but
here goes:
=20
Over the last week or so, we've tried to implement Miva Synchro in our
environment and have most of the functionality we need (there are lots
of things we'd wish for, tho). =20
=20
The most significant issue we have right now is the fact that our Miva
Admin username and password is showing up in our log files. =20
For example, we see a lot of entries like:=20
=20
POST
/plugins/MivaMerchants/admin.mvc?UserName=3Dxxxxxxxx&Password=3Dxxxxxxxx=
&S
tore_Code=3DZZZ&Module_Code=3Dsynchro&Action=3DSUT L&Synchro_Action=3DAGR=
P&Screen
=3DSUTL
=20
Very few people in our organization have access to our miva password =
and
most references I've seen on security say it's bad practice to store
username/password in files, especially unencrypted files. Is there
something we're missing on the configuration for Miva Synchro, or is
this just the way it is? =20
=20
Thanks in advance for any help in getting this issue resolved.
=20
Arnold
Support Services
[email protected] <mailto:[email protected]>=20
www.egetbetter.com <<A HREF ="http://www.egetbetter.com/>=20">http://www.egetbetter.com/>=20</A>
=20
------=_NextPart_000_0013_01C37A59.1EEDE110--
Comment