Shadow passwords and IDS
Posted in 2000
Topics: Security, Permissions & Auditing, Platform-Specific Issues, Versions, Editions & End-of-Life
Hello. In thread "Password problem on IDS 7.30 ( Linux )", Art S. Kagel wrote: > There is a problem connecting using a CONNECT TO statement > that includes username and password if the server > is using shadow passwords, MD5, or PAM. Does "there is a problem" mean it does not work at all? Does this apply to IDS 7.3 only or is IDS 2000 concerned as well? Thanks for comments. Norbert
I believe it is scheduled to be fixed in the 9.21 release due out in a few weeks and a 7.31 interrum release also due soon. The result of this 'bug' is that you can connect from a trusted host without a password if you have valid login on the server but you cannot connect, even from a trusted host, if the CONNECT TO statements includes the optional username and password. Art S. Kagel Norbert Heidbrink wrote: > > Hello. > > In thread "Password problem on IDS 7.30 ( Linux )", Art S. Kagel wrote: > > There is a problem connecting using a CONNECT TO statement > > that includes username and password if the server > > is using shadow passwords, MD5, or PAM. > > Does "there is a problem" mean it does not work at all? > Does this apply to IDS 7.3 only or is IDS 2000 concerned as well? > > Thanks for comments. > Norbert