Project

General

Profile

Actions

Bug #10587

open

/etc/default/passwd seems outdates

Added by Hubert Garavel over 4 years ago. Updated over 4 years ago.

Status:
New
Priority:
Normal
Assignee:
-
Category:
-
Start date:
2019-03-25
Due date:
% Done:

0%

Estimated time:
Difficulty:
Medium
Tags:
needs-triage
Gerrit CR:
External Bug:

Description

The settings of /etc/default/passwd need to be updated to face modern security challenges.

For instance,
PASSLENGTH=6
is much too weak. One should have at least
PASSLENGTH=10
or even
PASSLENGTH=12
as recommended in
https://www.networkworld.com/article/2726564/how-to-enforce-password-complexity-on-solaris.html

All the current definitions in /etc/default/passwd should be made strengthened
to make OpenIndiana secure by default.

Actions

Also available in: Atom PDF