[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: RFC: changes to default password strength checks in pam_unix



On Sun, Sep 02, 2007 at 02:39:25PM -0700, Steve Langasek wrote:
> 
> The upstream default of 6 has been around for at least 5 years, possibly as
> long as a decade; and the code in question is inactive when pam_unix is
> linked to cracklib, which I think most distributors other than Debian are
> doing (we confine the use of libcracklib to the separate pam_cracklib
> module, to keep cracklib out of base); so there probably isn't any modern
> justification for this default at all.
> 
Just curious, what is the rationale for wanting to keep cracklib out of
base?

Regards,

-Roberto

-- 
Roberto C. Sánchez
http://people.connexer.com/~roberto
http://www.connexer.com

Attachment: signature.asc
Description: Digital signature


Reply to: