[PATCH #6] AIX password expiration

Darren Tucker dtucker at zip.com.au
Mon Oct 28 21:21:04 EST 2002


Markus Friedl wrote:
> i don't think there is a portable way for setting
> passwords

So I've been discovering...

> so making sure /usr/bin/passwd is executed
> (no shells involved) and disallowing all other
> channels is the only portable thing we could do.

Protocol 2 requires the password to be changed before the session is
established, and using /usr/bin/passwd would need a tty.

Are you talking about implementing a subset of "expect" or changing the
password in the session for protocol 2 too?

-- 
Darren Tucker (dtucker at zip.com.au)
GPG key 8FF4FA69 / D9A3 86E9 7EEE AF4B B2D4  37C9 C982 80C7 8FF4 FA69
    Good judgement comes with experience. Unfortunately, the experience
usually comes from bad judgement.



More information about the openssh-unix-dev mailing list