Re: Strong password checks
"Manuel Amador (Rudd-O)" <[email protected]> Thu, 03 Feb 2005 16:57:19 -0500
| Newsgroups | gmane.network.directoryadmin |
|---|---|
| Message-ID | <[email protected]> |
No. DA is not the tool for users to change their passwords. The tool to do so is their OS-provided password change tool. El sáb, 29-01-2005 a las 13:43 +0200, Graham Leggett escribió: > Mike Jackson wrote: > > >> Most DSAs include modules or overlays to enforce password > >> strength/policy, including OpenLDAP. This should be up to the DSA. > > > There is nothing in RFC 2251 about password complexity, which means that > > if we support it then we support it in a different way for every > > directory server. It is not transparent. > > As I understood the original question, password complexity meant > distinguishing between "hUjd63*kg" (good) and "passw0rd" (bad), and > rejecting the password based on the admin's chosen policy. > > Optionally linking DA to cracklib should do the trick. > > Regards, > Graham > -- -- Manuel Amador (Rudd-O) <[email protected]> ------------------------------------------------------- This SF.Net email is sponsored by: IntelliVIEW -- Interactive Reporting Tool for open source databases. Create drag-&-drop reports. Save time by over 75%! Publish reports on the web. Export to DOC, XLS, RTF, etc. Download a FREE copy at http://www.intelliview.com/go/osdn_nl