Re: [Linux]: password sync in 2 or more linux boxes
From: Graham Nicholls (graham_at_rockcons.co.uk)
Date: 03/16/04
- Next message: F. Baker: ""server wrote less than expected""
- Previous message: MikeyD: "Re: can't change lower case to upper case in file name."
- In reply to: Sybren Stuvel: "Re: [Linux]: password sync in 2 or more linux boxes"
- Next in thread: Keith Keller: "Re: [Linux]: password sync in 2 or more linux boxes"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
Date: Tue, 16 Mar 2004 18:36:16 +0000
Sybren Stuvel wrote:
> ["Followup-To:" header set to alt.os.linux.]
> Sukhbir Dhillon enlightened us with:
>> Thanks for the suggestion. I just wanted to make sure if passwords are
>> not sent in clear text between servers.
>
> The passwords aren't even stored in clear text on your computer.
>
>> I have to use this scenario at bank and they have very strict
>> guidelines regarding such issues even though they dunno anything about
>> sniffers.
Scary!
>
> Then I suggest against NIS, since it does advertise everybody's
> encrypted passwords. With those and a good password cracker (John the
> Cracker, for instance) you can crack weak passwords in seconds.
Which is why you should NOT be using it. - you were totally right to comment
that the traffic should be encrypted - eg using ssh, so the packet payload
couldn't be read. The (slightly snide appearing) comment regarding knowing
about NIS before commenting was just plain wrong.
NIS+ was an attempt to fix this but seems to be a right PITA to administer,
so LDAP looks like a better (and more futureproof) bet.
>
>> Suggestions always welcome.
>
> www.tldp.org
>
> Sybren
-- Graham Nicholls Spammesenselessgraham@rockcons.co.uk
- Next message: F. Baker: ""server wrote less than expected""
- Previous message: MikeyD: "Re: can't change lower case to upper case in file name."
- In reply to: Sybren Stuvel: "Re: [Linux]: password sync in 2 or more linux boxes"
- Next in thread: Keith Keller: "Re: [Linux]: password sync in 2 or more linux boxes"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
Relevant Pages
|