Re: md5 default (was Re: Security trough paranoia)

Aaron Lehmann wrote:
> I'm not familiar with the typical implementations of MD5 passwords,
> but do they use some kind of salt[2]? If they don't, finding duplicate

I am pretty sure they do. Look in /etc/shadow: they are in the form
$XXXXXXXX$1$... where XXXXXXXX is the salt AFAIK.


Roland Bauerschmidt

