Enhanced security, triviality checks

From: Jane Kramer <Jane.Kramer_at_oberlin.edu>
Date: Sat, 13 Jun 1998 15:59:17 -0400

Hi,

I'm disappointed to discover how trivial the Triviality Checks under
Enhanced Security really are, and that the Help available through the
GUI interface is wrong (Triviality checks don't really force at least 2
characters and at least one digit or special character in passwords).

I'd like to implement Site Triviality Checks, to enforce stricter rules
on personally chosen passwords, and make sure that nothing in the GECOS
field can be used as a password.

I'm finding very little information on how to implement Site Triviality
Checks, or the /tcb/bin/pwpolicy file. Has anyone done this, and can
you explain how you've done it, or give pwpolicy examples?

Thanks.

        Jane Kramer
-- 
====================================================================
Jane Kramer                            
Computer Systems Manager, Oberlin College
Jane.Kramer_at_oberlin.edu
440-775-6929
====================================================================
Received on Sat Jun 13 1998 - 22:00:15 NZST

This archive was generated by hypermail 2.4.0 : Wed Nov 08 2023 - 11:53:37 NZDT