View Single Post
Saturn's Avatar
Posts: 1,648 | Thanked: 2,122 times | Joined on Mar 2007 @ UNKLE's Never Never Land
#580
Originally Posted by zimon View Post
It would be so logical, that there would be password for SMScon. The same password would be in SMScon-editor. The default password could be that 12345 or "smscon" or anything.
All commands coming from SMS should start with this password. Therefore there wouldn't have to be this "second" password which is now the prefix to SMS-commands settable in smscon-editor.

It would simplify, would make by default more secure, and even would consume less battery energy to check just the first word from SMS against the configured password and then retire or process it further if the password matches. Nowadays more there is SMS-commands recognized, more processing SMScon-daemon has to do with every incoming SMS, although most likely probability that the SMS was meant for SMScon is little in normal situation when the device is not lost or stolen.

Or is there really people who do not set the prefix (the 2nd password) in SMSCon-editor?
No, it is not a good option. The "new" user will see (thus know) the password as soon as the first message arrives. The benefit from comparing 5 instead of 10 character strings will not make any difference in battery life.