Re: password security

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Thu, Mar 04, 2004 at 08:49:57AM +0800, Liew Toh Seng wrote:
> how to do that.

deleting the dictionaries is not the right way to accomplish what you
want.  what you want to do is disable the strength checking module for
the passwd service.

edit /etc/pam.d/passwd

you will find a line referring to pam_cracklib.so most likely, this is
what is forcing users to not use foolish, guessable, insecure, unsafe
passwords, remove this line to allow users to be stupid.

also if pam_unix.so has the `obscure' argument remove that as well.

result would look something like this:

#%PAM-1.0

# The PAM configuration file for the Shadow `passwd' service

password    required    pam_unix.so nullok md5


do be aware that allowing users to pick stupid passwords will all but
guarentee intruder access to your systems by way of guessed passwords,
if your in a non-networked environment this may not be an issue however.

-- 
Ethan Benson
http://www.alaska.net/~erbenson/

Attachment: pgp00138.pgp
Description: PGP signature


[Index of Archives]     [Fedora Users]     [Kernel]     [Red Hat Install]     [Linux for the blind]     [Gimp]

  Powered by Linux