Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 4 Nov 1997 23:33:29 +0000 (GMT)
From:      Terry Lambert <tlambert@primenet.com>
To:        eivind@bitbox.follo.net (Eivind Eklund)
Cc:        tom@sdf.com, hackers@FreeBSD.ORG
Subject:   Re: Password verification (Was: cvs commit: ports/x11/kdebase - Imported sources)
Message-ID:  <199711042333.QAA24121@usr02.primenet.com>
In-Reply-To: <19971103191349.30502@bitbox.follo.net> from "Eivind Eklund" at Nov 3, 97 07:13:49 pm

next in thread | previous in thread | raw e-mail | index | archive | help
> > > Is it restricted to only let a user check his own password?  Or could
> > > we make it only check a users own password fairly easily?
> > 
> >   How would that be useful?
> 
> Security.  If a user can check other people's passwords, he can
> brute-force passwords.  If he can't, he can't.  :-)

/usr/bin/login
rshd
telnetd
rlogind
pop3d

....uh, the user can already check other peoples passwords this way.


					Terry Lambert
					terry@lambert.org
---
Any opinions in this posting are my own and not those of my present
or previous employers.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199711042333.QAA24121>