From owner-cvs-all@FreeBSD.ORG Sun Sep 18 22:24:04 2005 Return-Path: X-Original-To: cvs-all@freebsd.org Delivered-To: cvs-all@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 5B61816A41F; Sun, 18 Sep 2005 22:24:04 +0000 (GMT) (envelope-from setantae@submonkey.net) Received: from shrike.submonkey.net (cpc2-cdif2-3-1-cust208.cdif.cable.ntl.com [82.31.78.208]) by mx1.FreeBSD.org (Postfix) with ESMTP id C671F43D45; Sun, 18 Sep 2005 22:24:03 +0000 (GMT) (envelope-from setantae@submonkey.net) Received: from setantae by shrike.submonkey.net with local (Exim 4.52 (FreeBSD)) id 1EH7Zp-0009gZ-Dg; Sun, 18 Sep 2005 23:24:01 +0100 Date: Sun, 18 Sep 2005 23:24:01 +0100 From: Ceri Davies To: Giorgos Keramidas Message-ID: <20050918222401.GQ441@submonkey.net> Mail-Followup-To: Ceri Davies , Giorgos Keramidas , Gavin Atkinson , src-committers@freebsd.org, cvs-src@freebsd.org, cvs-all@freebsd.org References: <200509181540.j8IFe2LR042274@repoman.freebsd.org> <20050918200104.F89636@ury.york.ac.uk> <20050918203109.GA1419@flame.pc> Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="Eu9PQ+LfZADlAtIa" Content-Disposition: inline In-Reply-To: <20050918203109.GA1419@flame.pc> X-PGP: finger ceri@FreeBSD.org User-Agent: Mutt/1.5.10i Sender: Ceri Davies Cc: cvs-src@freebsd.org, src-committers@freebsd.org, cvs-all@freebsd.org Subject: Re: cvs commit: src/share/man/man5 passwd.5 X-BeenThere: cvs-all@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: CVS commit messages for the entire tree List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 18 Sep 2005 22:24:04 -0000 --Eu9PQ+LfZADlAtIa Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Sun, Sep 18, 2005 at 11:31:09PM +0300, Giorgos Keramidas wrote: > On 2005-09-18 20:16, Gavin Atkinson wrote: > > On Sun, 18 Sep 2005, Giorgos Keramidas wrote: > > > Modified files: > > > share/man/man5 passwd.5 > > > Log: > > > Explain the use of `*' in master.passwd and that it's slightly > > > different from the use of `*' in /etc/passwd. > > > > +.Nm master.passwd > > +file, a password of > > +.Ql * > > +is used to indicate that no one can ever log into that account. > > +The field only contains encrypted passwords, and > > +.Ql * > > +can never be the result of encrypting a password. > > > > This is not strictly true - all it prevents is logins using passwords. > > Passwordless logins using SSH public keys (for example) are unaffected. Since "pw lock" has been entering the string '*LOCKED*' for years now, is there any reason why this has never been fed back to the OpenSSH project for inclusion as LOCKED_PASSWD_STRING for FreeBSD? Then we can document that in passwd.5 too and usage can start to converge. Ceri PS I'm aware that different people use different strings, but since *LOCKED* is what pw has been using for ever I see no reason to use anything else. --=20 Only two things are infinite, the universe and human stupidity, and I'm not sure about the former. -- Einstein (attrib.) --Eu9PQ+LfZADlAtIa Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.2 (FreeBSD) iD8DBQFDLekBocfcwTS3JF8RAhmJAJ9GpdfxB0UImXJXdUJKJ0SIs6SlrwCbBZCg 59uG7FnBtD3QVSk2baAI9AE= =x6AX -----END PGP SIGNATURE----- --Eu9PQ+LfZADlAtIa--