OFFICIAL NEWS


uiWebPrevious12uiWebNext

#27 Report | Quote[en] 

Bubbason (atys)
All a mter of how you see things I guess.

Taking your point (and I don't mean to sound flippant) but if you 'genuinly' had concerns over the security of your account, and didn't feel that your concerns were being taken seriously, then why do you still log in and play a game which (in your mind) would present a risk to the care of your personal information?

My point isn't aimed in particular, but sounds a lot like "we have a problem (but not a real one)" until something happens. At which point, Homins gets on the back of it and it becomes a burning issue.

It would seem sensible to cancel subs until the issues were adressed and confidence restored, but in a weird way that would be the worst thing to do because cancelling subs would remove (already scarce) funds from the game hence less funds = less development resource/time/effort. To me that sounds like, I've been shot in my left foot, so I'm going to chop off my right one in protest

Funny thing 'Homin Nature!' :-)


You are right, in fact are 2 years now I am out of Atys. And I am one that had, 2 years ago, 365 game time played since 2004.
So, you can consider me a true fan and addicted to Atys.

But since the last merge and clean of all the stuff, with the Ryzom API developed totally unsecure, with Web App totally unsecure (and some other concerns about the merged community), I stopped playing. I unsubbed and gone to play another MMO.

Don't misunderstand me, as many people can remember, I love Atys. But as I was the only one pointing at the real problems of the game and never taken it seriously i could not do anything different from unsubscribing my 2 accounts.

I logged in now just to post here and, because I am a technician with 30 years of experience, I know what to do to protect my data. I change passwords regularly, I use different passwords anywhere, even my written notes are encrypted in my own way. But you have to guarantee security to all the people around, even people that know nothing about computer programming.

I will change the password once i finished to stay here, and probably it will take a lot of time before logging in the Web App another time.

I had "genuinely" concerns very long time ago (you can check forum if posts are saved somewhere), but no one cared.

I only hope, given a Comodo SSL Certificate is very cheap, that you finally decide to make your sites secure as they were during Nevrax era.

I still am a true fan of Atys and hope the bet wishes for all of you.

---

Gilgameesh
Legion of Atys

#28 Report | Quote[en] 

never mind

Last edited by Bubbason (10 years ago)

---



Everone has an opinion, and of course are entitled to have one, but others are equally entitled to decide whether they choose to agree or disagree. Acting like a complete Muppet isn't likely going to change minds or win support :)

#29 Report | Quote[en] 

OMG.. what i**ot made all fields in profile mandatory.. Wake up guys.. About ryzom security there was many posts.. Whole implementation of solwing that attack is ridiculous..

Edited 2 times | Last edited by Tiximei (9 years ago) | Reason: Please avoid offensive language even when covering them with **

#30 Report | QuoteMultilingual 

Multilingual | Français | [English]
Hello,

No passwords are saved without encryption in the data base, in effect a salt is used to secure it.

The length and the encryption of the passwords have been changed in the code by Ryzom Core.Once tested and validated, these changes will be applied to Ryzom services.

The improvement of security is an integral part of Ryzom Roadmap for 2015: https, secure.ryzom.com, passwords.

Last edited by Tamarea (9 years ago)

---

Tamarea
Ryzom Team Manager
(FR / EN / ES)

tamarea@ryzom.com
uiWebPrevious12uiWebNext
 
Last visit Tuesday, 16 April 20:58:05 UTC
P_:

powered by ryzom-api