Re: Mass Password/ssh Key change announcement DRAFT

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Mon, 10 Oct 2011 09:46:15 -0700
Toshio Kuratomi <a.badger@xxxxxxxxx> wrote:

> On Mon, Oct 10, 2011 at 10:11:44AM -0600, Kevin Fenzi wrote:
> > On Mon, 10 Oct 2011 09:00:11 -0700
> > Toshio Kuratomi <a.badger@xxxxxxxxx> wrote:
> > 
> > > I think that makring inactive will work for the password change
> > > (with the password strength hotifix, we also no longer accept the
> > > same password as the user last had). (Off by one we can't catch
> > > though: old: "mustang1977" this would still be accepted:
> > > "mustang1978")
> > 
> > So, when someone is 'inactive' they can login with their old
> > password, but it will ask them to change it then?
> > 
> Yep.  IIRC we made things work that way when we did our first mass
> password reset.

Great. 

So, if there's no other changes or objections, I will probably send out
the announcement tomorrow. Please let me know if you can think of
anything else we need to get in place before we announce. 

kevin

Attachment: signature.asc
Description: PGP signature

_______________________________________________
infrastructure mailing list
infrastructure@xxxxxxxxxxxxxxxxxxxxxxx
https://admin.fedoraproject.org/mailman/listinfo/infrastructure

[Index of Archives]     [Fedora Development]     [Fedora Users]     [Fedora Desktop]     [Fedora SELinux]     [Yosemite News]     [KDE Users]

  Powered by Linux