[KLUG Members] Passwd help

MPs members@kalamazoolinux.org
Tue, 21 Oct 2003 12:18:24 -0400 (EDT)


I compleatly agree with all the security concerns voiced in this thread,
and I have gone on record multiple times as being compleatly aginst it
[and many other things]. Alas, does anyone listen to the techs?

Thankyou,
Miles Pschigoda



On Mon, 20 Oct 2003, Adam Williams wrote:

> > GAAH... I am feeling blind.
> > I can't for the life of me figure out how to change the password
> > requirements for passwd. The Super Intendent of the schools is telling us
> > to allow less secure passwords.
>
> <RANT: Obligatory>
> *LESS*?  Is the moron on crack?  Itching to get the system exploited or
> eager to get sued when someone acquires personal information about
> another user they aren't supposed to have access to?  That can get
> *NASTY*. Has he talked to the lawyers about this?  Your going to say to
> the auditor, "Yea, our security policies are a joke, but thats on
> purpose."
> </RANT>
>
> > pert. information:
> > Bridgman Public Schools
>
> Public Schools & Lawsuits:  Like peanut butter & chocolate.
>
> > redhat 8 [stock]
> > shadow passwords
> > samba passwords are /in-dependant/. Don't wory about samba.
>
> You "want" to adjust the parameters to cracklib, probably in
> /etc/pam.d/system-auth.
>
> See - /usr/share/doc/cracklib-2.7/README &
> /usr/share/doc/pam-0.75/txts/README.pam_cracklib
>
> Your versions will probably be different.
>
> But again, making *LESS* secure passwords is STUPID!
>
> _______________________________________________
> Members mailing list
> Members@kalamazoolinux.org
> 
>