Join GitHub today
Add warning for default user/password usage #12603
For this one, my opinion is that we can permit logging in but should show a warning on the main page, similar to the way we warn the user if blowfish_secret is too short.
I'm undecided on whether we should have a configuration directive to bypass this test; I tend to think that's just adding clutter to the already-too-long list of configuration directives, but on the other hand my testing server actually has username pma and password pmapass and I don't want to be warned. I suppose I could just change the password... ;-)
Is it normal that the following warning disappeared somewhere between 4.5.1 and 4.7.7 and in newer versions ?