Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 2 Nov 1997 16:17:11 -0800 (PST)
From:      Tom <tom@sdf.com>
To:        hackers@freebsd.org
Cc:        Eivind Eklund <perhaps@yes.no>, se@freebsd.org, cvs-committers@freebsd.org, cvs-all@freebsd.org, cvs-ports@freebsd.org
Subject:   Re: Password verification (Was: cvs commit: ports/x11/kdebase - Imported sources)
Message-ID:  <Pine.BSF.3.95q.971102161512.18230A-100000@misery.sdf.com>
In-Reply-To: <199711022355.VAA00864@gaia.coppe.ufrj.br>

next in thread | previous in thread | raw e-mail | index | archive | help

On Sun, 2 Nov 1997, Joao Carlos Mendes Luis wrote: 

...
> But, how to allow users check only their own password, and still
> have the added security of shadow passwords ?  I can only think
> in a kind of password checking daemon that would accept commands
> on a AF_UNIX socket and some patches to libc pw commands.

  You can always use the pwcheck daemon from the Cyrus module (see ports).
It opens a unix socket at /var/pwcheck/pwcheck.  Permissions on the
/var/pwcheck directory can be used to determine who can check passwords.

> 					Jonny
> 
> --
> Joao Carlos Mendes Luis			jonny@gta.ufrj.br
> +55 21 290-4698				jonny@coppe.ufrj.br
> Universidade Federal do Rio de Janeiro	UFRJ/COPPE/CISI
> PGP fingerprint: 29 C0 50 B9 B6 3E 58 F2  83 5F E3 26 BF 0F EA 67
> 
> 

Tom





Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.3.95q.971102161512.18230A-100000>