Question regarding heightened security of CMSB 2.52-3+ and Facebook Signup/Signin Plugin

By Codee - September 21, 2013

As we are aware the more updated versions of CMSBuilder check passwords against a 10,000+ common password list and denies the use of passwords on that list (no complaints there!). My question is, if I purchase and integrate the Facebook Signup/Signin plugin (it was built originally for earlier versions of CMSB) will there be a conflict between the FB plugin and the heightened password security parameters - such as the user's FB password is on the anti-don't-letthem-use-it list?

Thank you in advance - especially if it's an expeditious response! ;-)

By Jason - September 24, 2013

Hi,

Great question!  When a new user account is created as a result of using the facebook login plugin, that account is assigned a random password, which is emailed to the user.  If the user only ever access the site via facebook login, they will never need to use this.  However, they will use it if they choose to login normally.  Since we never get access to their facebook password, they won't run into any issues with this check.  

Hope this helps.  Please let me know if you have any other questions.

Thanks!

---------------------------------------------------
Jason Sauchuk - Project Manager
interactivetools.com

Hire me! Save time by getting our experts to help with your project.
http://www.interactivetools.com/consulting/