Otto, Then it seems hacking a root PW should be no problem: ... It's true, very easy... Only encryption of the data can be a solution. In this case, if you use dbf you should also encrypt the data Otto, if your server system is exposed, you should protect it too. It is ...