What should go into a security-checking shell script?

Jeff Medcalf jeffm at uokmax.ecn.uoknor.edu
Tue Oct 24 20:19:08 AEST 1989


Password checking

    -  No system password should be allowed to be nonexistent or the same as
	the name of the account.

    -  Users whose accounts have such passwords should be warned that their
	password is unsafe

    -  Should check for null password entries and blank lines in /etc/passwd

This is not intended to be anything more than a minutes work at 5am, so it is
not by any means all inclusive.


-- 
Jeff Medcalf	jeffm at uokmax.uucp    jeffm at uokmax.ecn.uoknor.edu
!chinet!uokmax!jeffm	jeffm at invent_an_address (as reliable as the preceeding)
In 1869, the waffle iron was invented, thus solving the annoying tendency of
waffles to wrinkle in the dryer.



More information about the Comp.unix.wizards mailing list