Why doesn't RealGM support SSL/TLS?
Posted: Fri Mar 28, 2014 4:37 am
When I was debugging some HTTP traffic this afternoon, I decided to login to RealGm and saw this in my proxy logs:
====================================================================================================
POST /boards/ucp.php?mode=login HTTP/1.1
Host: forums.realgm.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.9; rv:27.0) Gecko/20100101 Firefox/27.0
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language: en-US,en;q=0.5
Accept-Encoding: gzip, deflate
Referer: ucp.php?mode=login
username=yfzblu&password=[redacted]&autologin=on&redirect=http%3A%2F%2Fforums.realgm.com%2Fboards%2Fviewtopic.php%3Ff%3D40%26t%3D1304665&sid=2d5bc4f995fcf1a0a9157a4cf0&login=Login
====================================================================================================
I have no idea how I never noticed this before. My larger concern relates to how our passwords might be stored in the database. I have my own ideas of how things should be done, but I don't want to sound demanding.
Thoughts?
====================================================================================================
POST /boards/ucp.php?mode=login HTTP/1.1
Host: forums.realgm.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.9; rv:27.0) Gecko/20100101 Firefox/27.0
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language: en-US,en;q=0.5
Accept-Encoding: gzip, deflate
Referer: ucp.php?mode=login
username=yfzblu&password=[redacted]&autologin=on&redirect=http%3A%2F%2Fforums.realgm.com%2Fboards%2Fviewtopic.php%3Ff%3D40%26t%3D1304665&sid=2d5bc4f995fcf1a0a9157a4cf0&login=Login
====================================================================================================
I have no idea how I never noticed this before. My larger concern relates to how our passwords might be stored in the database. I have my own ideas of how things should be done, but I don't want to sound demanding.
Thoughts?