[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-security] cracklib question



Gi Chae,

> Had a snoop through some of the directories as su (ssh2 of course) and
> found these 3 files hidden away in usr/lib
>
> cracklib_dict.hwm
> cracklib_dict.pwd
> cracklib_dict.pwi
>
> Now I know this is for testing passwords for vulnerabilities - surely this
> wouldn't be standard installation files would it?

Don't worry about it. Cracklib is a nice tool which can make sure your users 
don't use easy guessable passwords.

See: http://www.cert.org/vendor_bulletins/VB-97.16.CrackLib

-- 

With best regards,

Michael Stauber
mstauber@xxxxxxxxxxxxxx
Unix/Linux Support Engineer