If a user logs into an ARIS client, the password will be encrypted and stored in configuration files. If you consider this as a security issue, you can force ARIS not to save passwords at all. If you do so, all stored passwords will be deleted automatically.
Warning
If you change settings in the arisloader.cfg file, the settings will be lost after an update setup.
All stored passwords will be removed from configuration files. This affects all ARIS severs in your system. Not only the ARIS sever from which the ARIS client was downloaded.
Prerequisite
You have write access to the ARIS installation directory.
Procedure
DoNotStoreConnectionPasswords=true
Warning
When performing an update setup all modifications made manually in CFG or XML files will be lost.
Save modified configuration files locally and document your modifications. After an update installation you can easily compare your saved file and copy the modified line into the updated configuration file.
Download clients do not store any passwords for any server connection. This affects all ARIS servers in your system. All encrypted passwords are deleted from all configuration files.