[wp-trac] Re: [WordPress Trac] #6754: Improve default wp_salt()

WordPress Trac wp-trac at lists.automattic.com
Tue May 12 13:44:04 GMT 2009


#6754: Improve default wp_salt()
--------------------------+-------------------------------------------------
 Reporter:  filosofo      |       Owner:  ryan                       
     Type:  defect (bug)  |      Status:  new                        
 Priority:  low           |   Milestone:  2.9                        
Component:  Security      |     Version:                             
 Severity:  minor         |    Keywords:  SECRET_KEY wp_salt security
--------------------------+-------------------------------------------------

Comment(by filosofo):

 Replying to [comment:8 Denis-de-Bernardy]:
 > you'd get logged out indeed. it could be a big deal if you activate WP-
 Cache or similar plugins. :-)

 Just to be clear, I think aviewanew is concerned that he wouldn't be able
 to log in with his current password, which would not be the case.
 Changing the salt here would just invalidate your current login session.

 Presumably if you're editing your wp-config.php file or moving servers, it
 won't be too much trouble to clear your cache.

-- 
Ticket URL: <http://core.trac.wordpress.org/ticket/6754#comment:9>
WordPress Trac <http://trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list