[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: { in cleartext passwords

l0calh0st wrote:

Over the weekend, I upgraded our 4 server environment from ldbm-backend 2.0.23 on RedHat 7.1 to bdb-backend 2.2.23 on Debian Sarge. Things went quite swimmingly, but I am noticing issues with some of our users that have { as the first character in their password. We store the passwords in cleartext in the database, and my workaround has been to convert the affected folks' passwords to {CRYPT} hashes, but I think it is only a feasible temporary solution, as our password programming application will eventually pick an incompatible password.
You should be able to prefix the password with "{CLEARTEXT}" to get by this problem.

 -- Howard Chu
 Chief Architect, Symas Corp.  http://www.symas.com
 Director, Highland Sun        http://highlandsun.com/hyc
 OpenLDAP Core Team            http://www.openldap.org/project/