Re: Password History



Steve M. Fabac, Jr. wrote:
Joe Chasan wrote:
On Wed, Aug 27, 2008 at 09:09:12PM -0500, Steve M. Fabac, Jr. wrote:
Joe Chasan wrote:
On Wed, Aug 20, 2008 at 12:46:15AM -0700, bonixsas@xxxxxxxxx wrote:
On 19 Aug, 21:49, Joe Chasan <j...@xxxxxxxxxxxxxxxxxxx> wrote:
On Tue, Aug 19, 2008 at 07:36:35AM -0700, bonix...@xxxxxxxxx wrote:
On 15 Aug, 21:45, Joe Chasan <j...@xxxxxxxxxxxxxxxxxxx> wrote:
Any easy way to implement password history - e.g. user can't re-use last X
passwords, where X is a configurable parameter?
After an IT audit, auditors were surprised this was not implemented in
SCO OpenServer (6.0/mp2)
One option you have is to script around goodpw(ADM) to
implement this. See the man page at:
http://osr600doc.sco.com/en/man/html.ADM/goodpw.ADM.html
not sure what you are suggesting - if i wrote my own script wraparound
to goodpw to also check to my own homegrown history tool after regular
goodpw checks, wouldn't i have to store stuff in plain text?
Joe,

You have the option to use crypt(S) if you wish?
yes, true - i guess my real issue is whether a homegrown hack of my
own would suffice when it was expected it to be provided by application
OS. All this came up via an IT audit by outside auditor Ernst & Young.
They ask for copies of files, settings, etc, as proof of all and i guess
they expect features common in windows world.

--
-Joe Chasan- Magnatech Business Systems, Inc.
joe - at - magnatechonline -dot- com Hicksville, NY - USA
http://www.MagnatechOnline.com Tel.(516) 931-4444/Fax.(516) 931-1264
Joe,

Have a look at npasswd-2.05.

I had looked at npasswd a while back - my main concern is if i used
something other than passwd(C) to change password that such changes would
not be reflected in the tcb file reports that users get from scoadmin menu.

Exactly my concern and why I submitted my work to Ron at SCO as a candidate
for inclusion in the Skunkware library. With Ron's experience and resources,
he should be able to modify npasswd to update the TCB files. Npasswd suggests
that it is possible as the test for OSF1 tcb is listed in its code.

I'm not a c programmer and the changes I muddled through were hard won with
help from Bela and others.

I don't know if Ron is still at SCO or if there is any interest at SCO in
adding new programs to Skunkware. Anyone interested in npasswd might encourage
its addition by sending a vote for it to rr@xxxxxxx

Yas anyone *mirrored* the Skunkware site, even privately. Aren't they at risk as a consequence of the SCO lawsuits?
.



Relevant Pages

  • Re: Password History
    ... |>>> passwords, where X is a configurable parameter? ...
    (comp.unix.sco.misc)
  • Re: The SCO Group - 21st Century Fireship...
    ... It is a requirement of that license agreement that SCO has the ... >>right to audit for compliance. ... complaint that has copyright infringement claims, ...
    (comp.unix.sco.misc)
  • Re: Password History
    ... passwords, where X is a configurable parameter? ... If you want thorough such control, upgrade to an OS smart enough to use Kerberos (which I'm not sure SCO has ever published), or use a Kerberized master password server with an NIS back end for SCO clients. ...
    (comp.unix.sco.misc)
  • Re: Password History
    ... passwords, where X is a configurable parameter? ... Kerberos (which I'm not sure SCO has ever published), ... master password server with an NIS back end for SCO clients. ...
    (comp.unix.sco.misc)
  • Re: Password History
    ... passwords, where X is a configurable parameter? ... Kerberos (which I'm not sure SCO has ever published), ... master password server with an NIS back end for SCO clients. ...
    (comp.unix.sco.misc)

Quantcast