/etc/passwd consolidation

Jeff Makey Makey at LOGICON.ARPA
Thu Apr 13 10:48:41 AEST 1989


In article <18929 at adm.BRL.MIL> rbj at dsys.icst.nbs.gov (Root Boy Jim) writes:
>? From: Jeff Makey <Makey at logicon.arpa>
>?
>? I hope you have taken into consideration the security risks of using
>? the same password on more than one machine, since this must be weighed
>? against the convenience of this scheme.
>
>If your users use .rhosts,
>then one password is actually safer. Multiple passwords give the bad guys
>multiple targets, any of which would allow access to all machines.

Agreed.  If you are willing to let a breach of security on one machine
lead trivially to breaches of other machines, then by all means stick
to a single difficult-to-guess password and .rhosts files.

                           :: Jeff Makey

Department of Tautological Pleonasms and Superfluous Redundancies Department
    Disclaimer: Logicon doesn't even know we're running news.
    Internet: Makey at LOGICON.ARPA    UUCP: {nosc,ucsd}!logicon.arpa!Makey



More information about the Comp.unix.questions mailing list