Yes.  this would enforce the password policy regardless of the method
used to change it.  Currently, it would be possible to do a ldap_modify
to change your password to a 1 character password that would let you
authenticate to any clients, including pam_ldap.

I plan on fixing this in gutsy.

-- 
openldap should enforce ubuntu's default password policy
https://bugs.launchpad.net/bugs/121337
You received this bug notification because you are a member of Ubuntu
Bugs, which is the bug contact for Ubuntu.

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to