1
 Follower
2
 Likes

User_Login needs to log more information around failures

Backend
On our radar

It makes sense that the exception coming from User_Login is generic, to avoid giving an attacker useful information. But it is frustrating to debug anything because the messages logged are not detailed enough. User_Login needs to have more detailed logging when a login fails, so we can understand why the login is not working.

J.Ja

Created on 2 Jun 2017
Comments (0)
views
164
Followers
1