Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Context:

The DAM Center has implemented Remember me functionality by adding the user's credentials to a cookie. That is a security flaw, although probably not that serious. 

Solution:

A new config meta field has been added to Config parameters: "Enable Remember me".

...

If you have a client that's very strict with their IT security, you can then disable Remember me by removing the check mark. 

Impact:

There's not much of an impact, as the user still has a session in the API, i.e. refreshing the DAM Center website doesn't log the user out. 

...