Re: RFC: changes to default password strength checks in pam_unix

On Sun, Sep 02, 2007 at 02:39:25PM -0700, Steve Langasek wrote:
> The upstream default of 6 has been around for at least 5 years, possibly as
> long as a decade; and the code in question is inactive when pam_unix is
> linked to cracklib, which I think most distributors other than Debian are
> doing (we confine the use of libcracklib to the separate pam_cracklib
> module, to keep cracklib out of base); so there probably isn't any modern
> justification for this default at all.
Just curious, what is the rationale for wanting to keep cracklib out of



Roberto C. Sánchez

