Topic: Hide the password
Vassili![]() Topic Opener |
Posted at:
2016-07-29, 11:45 UTC+2.0
Can you please hide the password for the b19? It's very awful that when i stream on Twitch, i click on multiplayer and then, my password suddenly appear to everybody (i have deleted a 2h15 replay for that) ! Yes, you will answer the b19 is finished, you just debug it, but i do not ask a gameplay change. Thanks. [edit: can you please move this topic to the "Game suggestions" forum part please?]
Edited:
2016-07-29, 14:34 UTC+2.0
![]() ![]() |
kaputtnik![]() |
Posted at:
2016-07-29, 18:22 UTC+2.0
I am not sure, but i think you could enter the online gaming zone without a password.
It is not possible to move an existing thread to another forum. ![]() ![]() |
SirVer |
Posted at:
2016-07-29, 18:38 UTC+2.0
This is a feature change which is no longer possible in first snow feature freeze iirc. As another workaround you can check the box saying "keep using these credentials" and then the login box will never show up, effectively hiding your password on stream. Granted, neither the current situation nor this workaround are ideal, but this is what we currently got :/. ![]() ![]() |
Vassili![]() Topic Opener |
Posted at:
2016-07-29, 20:56 UTC+2.0
Ok, thanks for answers. @kaputtnik: i will use my meta-server username @SirVer: i used to never register my passwords, so i will just try to remember to hide the game before selecting the meta-server lobby ![]() ![]() |
DragonAtma![]() |
Posted at:
2016-07-30, 00:05 UTC+2.0
Then I recommend hiding the password as the first change for version 20.
![]() ![]() |
GunChleoc![]() |
Posted at:
2016-07-30, 09:44 UTC+2.0
Another problem with passwords is that they are stored unencrypted. So, the password system definitely needs a rework. Busy indexing nil values ![]() ![]() |
SirVer |
Posted at:
2016-07-30, 10:14 UTC+2.0
afaik this is only true, if the password is also saved somewhere secure. As Gun said, Widelands does not encypt saved passwords for 2 reasons: 1) back in the days linking in encyption software meant your software was export restricted in the US - a lot of headaches for open source software. 2) doing encryption right is difficult and we have no specialist. It was a deliberate choice to show the password in clear text - to emphasize that this password is not secure. ![]() ![]() |
DragonAtma![]() |
Posted at:
2016-07-30, 13:08 UTC+2.0
You really, really should encrypt the passwords. ![]() ![]() |
einstein13![]() |
Posted at:
2016-07-30, 17:47 UTC+2.0
I don't think that encryption the password here is the most important thing we should do. The password is only to log into the metaserver. Nothing else. But if we want to make any changes, I can see 2 "simple" ways:
Maybe I am not understanding well SirVer's first point, but I think that it (2nd idea) can solve all the problems einstein13 ![]() ![]() |
DragonAtma![]() |
Posted at:
2016-07-30, 23:45 UTC+2.0
The problem is that many people use the same password for multiple things. No, the metaserver password is not a big deal, but what if someone uses the same password for their bank account? ![]() ![]() |