Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 9 Jun 1999 18:22:26 -0400 (EDT)
From:      Bill Vermillion <bill@bilver.magicnet.net>
To:        freebsd-isp@freebsd.org
Subject:   Re: Finding what user's previous password was.
Message-ID:  <199906092223.SAA83399@bilver.magicnet.net>
In-Reply-To: <Pine.BSF.4.05.9906092216550.69164-100000@freja.webgiro.com> from Andrzej Bialecki at "Jun 9, 1999 10:18: 3 pm"

next in thread | previous in thread | raw e-mail | index | archive | help
Andrzej Bialecki recently said:
> On Tue, 8 Jun 1999, Todd Backman wrote:
> 

> > It is gone.
> 
> ..or it's still in /var/backups/master.passwd.bak


However it's encoded.  To prove the the user that it had
not changed you'd neet to take the password the user thinks he
had an encrypt it with the same salt - otherwise you have one
chance of 4096 of them matching.


-- 
bv@wjv.com


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-isp" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199906092223.SAA83399>