Guys
Last week I had a bit of an issue which I raised through our LA tech support to ESS. The issue is un-important however part of the offical ESS response was, err, interesting.
This implies that SIMS ID has access to the plain text password history for a user, which either means the passwords are stored using reversible encryption or they are stored as plain text,
The former is just sloppy and about as much use as the proverbial chocolate fireguard (Base64, ROT-13 - looking at you guys), the latter farcical and typical SIMS I guess.
Am I just being caffiene deprived and missing something obvious or are ESS just not very bright?