Actions
Bug #10587
open/etc/default/passwd seems outdates
Status:
New
Priority:
Normal
Assignee:
-
Category:
-
Start date:
2019-03-25
Due date:
% Done:
0%
Estimated time:
Difficulty:
Medium
Tags:
needs-triage
Gerrit CR:
External Bug:
Description
The settings of /etc/default/passwd need to be updated to face modern security challenges.
For instance,
PASSLENGTH=6
is much too weak. One should have at least
PASSLENGTH=10
or even
PASSLENGTH=12
as recommended in
https://www.networkworld.com/article/2726564/how-to-enforce-password-complexity-on-solaris.html
All the current definitions in /etc/default/passwd should be made strengthened
to make OpenIndiana secure by default.
Actions