Subject: Re: /etc/passwd.conf
To: Jeremy C. Reed <reed@reedmedia.net>
From: None <itojun@iijlab.net>
List: tech-security
Date: 08/06/2003 08:14:11
>> given that DES is crackable in 3 seconds, i would like to propose the
>> following change. you can still use DES password entries, it only
>> affects newly-created entries (like by passwd(1)). what do people
>> think? (ypcipher is kept to "old" for backward compat)
>> diff -u -r1.2 passwd.conf
>Why change in the passwd.conf instead of in src/lib/libutil/passwd.c?
hmm i see, then i should have proposed "change the default choice on
src/lib/libutil/passwd.c to blowfish,7".
itojun