Red Hat Bugzilla – Bug 27104
RFE: Password field in High Security install is too short
Last modified: 2007-04-18 12:31:24 EDT
High security option as the default looks promising, yet, in
adding root, and initial user account, there is only room for
an 8 character password. This loses the benefit of long
'line noise' passphrases ...
RFE: Extend password field when High Security to at least 24 characters
Doesn't the field scroll when you enter a longer password?
The high security option, btw, only refers to the firewall configuration.
Dunno -- will test.
But if so, it violates the principle of Least Surprise. The option for
root's password is visibly longer than the 9 char for end users ...
WHY in the world 9 characters ? This has NO value to a long time
unix admin (who KNOWS passwords are only significant to 8 chars --
makes it look as though you were just sloppy instead of signalling
that passphrases are available)
At least conform both root and end users to the longer value, and
inform that md5 hashed passwords (or whatever) are available.
the 8-chars limitation is only for DES crypt(), not for MD5.
"who KNOWS passwords" ... was in 'old hand who stopped learning about
1975' mode ... Yes, I know ... but the signal sent by a short
password field is that this length is all that will be accepted.
(a ">" at the right margin might signal a scrolling width field).
I fully agree.
I'm inclined to agree, however the documentation would have to be changed.
Since the translations are already underway, we can't change things at this
time. I'm deferring this and I'll put this on our list for a future release.
What about the simple confirmance of displayed field length to the longer value
allowed for root in TUI, compared with end users ... that requires no doco
changes ... it is just visual appearance, and would seem to be able to be rolled
in in 7.1 ?
There's just not time to address non-critical bugs at this time. Screenshots
are a part of the documentation, and we are in a complete screen freeze. Deferring.
Did some counting on the TUI install
Root has a field of 24 width, and accepts 23 with no continuation indication
End users offers 10, and takes 9, with no continuation indication ...
--------------I will un-defer once 7.1 goes GOLD to get it changed at once in
the next version cycle.
Re-open for consideration of proposed fix in RH 7.2
We will roll these proposed changes into bug #24580. Thanks for your suggestion.
*** This bug has been marked as a duplicate of 24580 ***