Re: Strong password checks

"Manuel Amador (Rudd-O)" <[email protected]> Thu, 03 Feb 2005 16:57:19 -0500
Newsgroups gmane.network.directoryadmin
Message-ID <[email protected]>
No.  DA is not the tool for users to change their passwords.  The tool
to do so is their OS-provided password change tool.

El sáb, 29-01-2005 a las 13:43 +0200, Graham Leggett escribió:
> Mike Jackson wrote:
> 
> >> Most DSAs include modules or overlays to enforce password
> >> strength/policy,  including OpenLDAP.  This should be up to the DSA.
> 
> > There is nothing in RFC 2251 about password complexity, which means that 
> > if we support it then we support it in a different way for every 
> > directory server. It is not transparent.
> 
> As I understood the original question, password complexity meant 
> distinguishing between "hUjd63*kg" (good) and "passw0rd" (bad), and 
> rejecting the password based on the admin's chosen policy.
> 
> Optionally linking DA to cracklib should do the trick.
> 
> Regards,
> Graham
> --
-- 
Manuel Amador (Rudd-O) <[email protected]>


-------------------------------------------------------
This SF.Net email is sponsored by: IntelliVIEW -- Interactive Reporting
Tool for open source databases. Create drag-&-drop reports. Save time
by over 75%! Publish reports on the web. Export to DOC, XLS, RTF, etc.
Download a FREE copy at http://www.intelliview.com/go/osdn_nl