On Fri, Dec 05, 2003 at 04:44:44PM +0800, Derek Chew En-Hock wrote:
I got a particular weird passwd problem with one particular debian machine that I am using... apparently, whether you input a password with a special character, the system still thinks its the same as the password without the special character...
for example, if my password is testing123$
the system would actually allow a valid login with either testing123 or testing123$ as the valid password!
Is it really the special character, or rather something along of not having md5 enabled and thus being limited to eight characters. See http://lists.debian.org/debian-security/2003/debian-security-200312/msg00094.html for details.
Cheers, Flo
pgp00000.pgp
Description: PGP signature

