Date: Tue, 4 Nov 1997 23:33:29 +0000 (GMT) From: Terry Lambert <tlambert@primenet.com> To: eivind@bitbox.follo.net (Eivind Eklund) Cc: tom@sdf.com, hackers@FreeBSD.ORG Subject: Re: Password verification (Was: cvs commit: ports/x11/kdebase - Imported sources) Message-ID: <199711042333.QAA24121@usr02.primenet.com> In-Reply-To: <19971103191349.30502@bitbox.follo.net> from "Eivind Eklund" at Nov 3, 97 07:13:49 pm
next in thread | previous in thread | raw e-mail | index | archive | help
> > > Is it restricted to only let a user check his own password? Or could > > > we make it only check a users own password fairly easily? > > > > How would that be useful? > > Security. If a user can check other people's passwords, he can > brute-force passwords. If he can't, he can't. :-) /usr/bin/login rshd telnetd rlogind pop3d ....uh, the user can already check other peoples passwords this way. Terry Lambert terry@lambert.org --- Any opinions in this posting are my own and not those of my present or previous employers.
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199711042333.QAA24121>