From owner-freebsd-questions@FreeBSD.ORG Wed Dec 30 17:21:11 2009 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 6845D106566B for ; Wed, 30 Dec 2009 17:21:11 +0000 (UTC) (envelope-from jhelfman@e-e.com) Received: from mail.experts-exchange.com (mail.experts-exchange.com [64.156.132.251]) by mx1.freebsd.org (Postfix) with ESMTP id 4F7898FC1C for ; Wed, 30 Dec 2009 17:21:11 +0000 (UTC) Received: from eggman.experts-exchange.com (unknown [72.29.180.81]) by mail.experts-exchange.com (Postfix) with ESMTP id F005B4A25CC1; Wed, 30 Dec 2009 09:06:50 -0800 (PST) Received: by eggman.experts-exchange.com (sSMTP sendmail emulation); Wed, 30 Dec 2009 09:19:52 -0800 Date: Wed, 30 Dec 2009 09:19:52 -0800 From: Jason To: Matthew Seaman Message-ID: <20091230171951.GC41366@eggman.experts-exchange.com> References: <20091230123341.GC36440@mech-cluster241.men.bris.ac.uk> <4B3B53B5.7040601@infracaninophile.co.uk> <20091230080857.L54092@qroenaqrq.6qbyyneqvnyhc.pbz> <4B3B885F.50808@infracaninophile.co.uk> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii; format=flowed Content-Disposition: inline In-Reply-To: <4B3B885F.50808@infracaninophile.co.uk> X-Operating-System: FreeBSD 7.2-RELEASE-p4 X-Living-The-Dream: I love the SLO Life! User-Agent: Mutt/1.5.20 (2009-06-14) Cc: Lars Eighner , Anton Shterenlikht , freebsd-questions@freebsd.org Subject: Re: does toor have passwd or not? According to logins -p: yes X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 30 Dec 2009 17:21:11 -0000 The handbook has documentation on this: http://www.freebsd.org/doc/en_US.ISO8859-1/books/faq/security.html#TOOR-ACCOUNT -jgh On Wed, Dec 30, 2009 at 05:05:35PM +0000, Matthew Seaman thus spake: >Lars Eighner wrote: >> On Wed, 30 Dec 2009, Matthew Seaman wrote: > >>> If there's nothing in the second field, then you have a problem, as that >>> means the account has a NULL password (ie. just hit return when prompted >>> for a password -- > >> I've been wrong before, but I think you do not get a password prompt at >> all, >> at least not on login. You enter the login: name and you are off to motd >> and a command prompt. > >It depends on what application you're using to authenticate yourself. >Login on the console doesn't ask for a password. sshd(8) does (IIRC). >I can't remember what su(1) does. ftpd(8) always asks for a password. >xdm(1) and that ilk have fields for username and password in one panel, >and generally you just ignore the password field. That's for access to >a non-root account: as I said, root or other super-user accounts such as >toor may not permit root login at all, or may not permit login without a >password. > > Cheers, > > Matthew > >-- >Dr Matthew J Seaman MA, D.Phil. 7 Priory Courtyard > Flat 3 >PGP: http://www.infracaninophile.co.uk/pgpkey Ramsgate > Kent, CT11 9PW >