Bug 4979
Summary: | problems with non-us ascii in passwords | ||
---|---|---|---|
Product: | [Retired] Red Hat Linux | Reporter: | Niels Walet <Niels.Walet> |
Component: | passwd | Assignee: | David Lawrence <dkl> |
Status: | CLOSED NOTABUG | QA Contact: | |
Severity: | medium | Docs Contact: | |
Priority: | medium | ||
Version: | 6.0 | CC: | Niels.Walet |
Target Milestone: | --- | Keywords: | Security |
Target Release: | --- | ||
Hardware: | i386 | ||
OS: | Linux | ||
Whiteboard: | |||
Fixed In Version: | Doc Type: | Bug Fix | |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 1999-09-20 17:56:53 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: |
Description
Niels Walet
1999-09-08 09:36:21 UTC
Actually, usin a $ sign gives rise to the same problem! (i.e. setting password to FFFFF$GGGGG allows su using FFFFF$ as password!) I have found the solution to my passwd problem: on upgrade to rh6.0 my /etc/pam.d/passwd file was written incorrectly. Copying one from a fresh install solved the problem. So a warning to all of you: when upgrading change the last line of the file to password required /lib/security/pam_pwdb.so use_authtok nullok md5 shadowon further checking this seems to be due to a problem with systems upgraded to 6.0 only - freshly installed systems don't have trhe problem. The length of the stored passwords in the /etc/shadow files on the upgraded systems is much smaller than those on the freshly installed one. It seems that the symbol issue is moot, it is just a length issue around 8 characters of the password are used, the rest are ignored! Simply running the authconfig program will allow you to select md5 passwords on an upgraded system. We do not change the default on old systems in order to manage backwards compatibility correctly. |