On Wed, 2005-10-12 at 14:10 -0400, Jason Day wrote: > > Seems like I remember reading a security advisory that Domino did > this, > and that it wasn't a good thing. I can't find the reference though. Thats is a hell of a lot better then sending the plaintext password to LDAP. I would want the LDAP server to send me an MD5 encrypted password.