Re: It's not possible to allow non-OPIE logins only from trusted
RW <rwmaillists@googlemail.com> writes:
> IIRC there is/was a weakness in FreeBSD's OPIE implementation in that
> it's susceptible to rainbow table attacks - I think part of the hash
> is discarded.
Can you provide more details?
AFAIK, OPIE was written to be 100% compatible with S/Key, so any
weakness in OPIE is a design flaw in S/Key which cannot be corrected.
DES
--=20
Dag-Erling Sm=C3=B8rgrav - des@des.no
_______________________________________________
freebsd-security@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-security
To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
討論串 (同標題文章)
完整討論串 (本文為第 19 之 26 篇):