in reply to Re: How do I write what I need, given that I know nothing at all about perl.
in thread How do I write what I need, given that I know nothing at all about perl.

I have no interest in changing the module. I want to write a script that uses the module, as is, to find a file that holds DATA, that we have to manipulate BY HAND on a regular basis. Yes, security is very important - this particular file contains usernames and passwords for the database. How much less secure is it to have a script (that only people who admin the server will be able to use) rather than doing it by hand all the time??

Wouldn't a script be less vunerable to typo's and the like? Please, tell me the right way to solve this problem! If writing a script isn't it, I'm all ears. Either way, I need this functionality.

Did you actually read what I wrote, or was that a knee-jerk response I just witnessed?

  • Comment on Re: Re: How do I write what I need, given that I know nothing at all about perl.

Replies are listed 'Best First'.
Re: Re: Re: How do I write what I need, given that I know nothing at all about perl.
by Juerd (Abbot) on Jan 02, 2003 at 09:27 UTC

    I have no interest in changing the module. I want to write a script that uses the module, as is, to find a file that holds DATA, that we have to manipulate BY HAND on a regular basis.

    Okay, you lost me completely. You use a module to find a file, yet the module is named DBIx::Password. What file does it find, and what data is stored in it? I'm sorry - I thought I knew what you meant, but apparently I do not, and your explanation didn't help much.

    Did you actually read what I wrote, or was that a knee-jerk response I just witnessed?

    I did read, but misunderstood. What exactly does your DBIx::Password module do?

    Update - Nevermind me. I thought Vladinator was storing passwords in a module. "I know nothing about Perl" made me think he was a newbie that ill-named his module (You don't wanna know how many people store data in modules in the DBIx namespace, not realising that it is for DBI extensions). I didn't know about DBIx::Password on CPAN.

    - Yes, I reinvent wheels.
    - Spam: Visit eurotraQ.
    

      DBIx::Password is not as bad as Handy::Dandy but it is close. The Makefile.PL is essentially an interactive config script which then writes the config - wait for it - *into a variable within Password.pm*. Yummy. No methods to change anything either. If you forget to change the permissions as suggested then anyone can read all the passwords. If you set it so that only the Server can read the .pm then anyone who can write a CGI can access it. It is pretty bad and tres tres insecure.

      cheers

      tachyon

      s&&rsenoyhcatreve&&&s&n.+t&"$'$`$\"$\&"&ee&&y&srve&&d&&print