[389-users] Entire password not checked

Elías Halldór Ágústsson elias at hi.is
Tue Apr 27 00:18:45 UTC 2010


Aaron Mills skrifaði:
> However, whenever users authenticate via LDAP the server appears to check only the first 8 characters of their passwords.

You're probably using the CRYPT password method. Other, newer and safer 
methods, such as SSHA, can store much longer passwords.



More information about the 389-users mailing list