From owner-freebsd-bugs@FreeBSD.ORG Tue Sep 15 19:50:05 2009 Return-Path: Delivered-To: freebsd-bugs@hub.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 5E491106566C for ; Tue, 15 Sep 2009 19:50:05 +0000 (UTC) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (freefall.freebsd.org [IPv6:2001:4f8:fff6::28]) by mx1.freebsd.org (Postfix) with ESMTP id 4D6618FC08 for ; Tue, 15 Sep 2009 19:50:05 +0000 (UTC) Received: from freefall.freebsd.org (gnats@localhost [127.0.0.1]) by freefall.freebsd.org (8.14.3/8.14.3) with ESMTP id n8FJo54g087881 for ; Tue, 15 Sep 2009 19:50:05 GMT (envelope-from gnats@freefall.freebsd.org) Received: (from gnats@localhost) by freefall.freebsd.org (8.14.3/8.14.3/Submit) id n8FJo5lu087880; Tue, 15 Sep 2009 19:50:05 GMT (envelope-from gnats) Date: Tue, 15 Sep 2009 19:50:05 GMT Message-Id: <200909151950.n8FJo5lu087880@freefall.freebsd.org> To: freebsd-bugs@FreeBSD.org From: Remko Lodder Cc: Subject: Re: bin/138855: if the hostname is empty, opiepasswd(1) creates a seed too short X-BeenThere: freebsd-bugs@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: Remko Lodder List-Id: Bug reports List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 15 Sep 2009 19:50:05 -0000 The following reply was made to PR bin/138855; it has been noted by GNATS. From: Remko Lodder To: deeptech71@gmail.com Cc: freebsd-gnats-submit@FreeBSD.org Subject: Re: bin/138855: if the hostname is empty, opiepasswd(1) creates a seed too short Date: Tue, 15 Sep 2009 21:47:05 +0200 >> >> > An opie seed should be at least 6 chars long. It defaults to 2 chars > from the hostname and 4 random digits. > > I have don't have a hostname (not set in rc.conf) (equivalent to > hostname being "" instead of not existing?). The result is that > opiepasswd creates a seed with 4 chars only. Later, opiekey(1) > rejects this seed. >> How-To-Repeat: > # hostname "" > switch to a user who has never used opie (no entry in /etc/opiekeys) > # opiepasswd -cf >> Fix: > Could use one or two random chars if the hostname is too short > (trivially patch contrib/bin/newseed.c?). > I wonder whether this falls into the category "dont do that" situation, where people do things that we do not support. Like using a custom kernel, this smells like something that people choose for themselves. -- /"\ Best regards, | remko@FreeBSD.org \ / Remko Lodder | remko@EFnet X http://www.evilcoder.org/ | / \ ASCII Ribbon Campaign | Against HTML Mail and News