Why is FAI using /etc/passwd and not /etc/shadow?

jimmy at g-tec.co.at jimmy at g-tec.co.at
Wed May 19 13:58:25 CEST 2004


On Wed, May 19, 2004 at 12:28:38PM +0100, Kenny Duffus wrote:
> On Tue, May 18, 2004 at 08:17:48PM +0200, jimmy at g-tec.co.at wrote:
> > Hello,
> > 
> > Why is FAI using /etc/passwd? I think this is a real security risk and
> > should not be used for a default installation. If /etc/passwd is used
> > because of NIS then it would be better to use /etc/passwd only for
> > NIS-classes, IMO.
> > I'm also wondering that debootstrap didn't activate shadow passwords. I
> > thought that this is standard when using the noninteractive frontend.
> 
> You need to turn it on by adding the following to one of your scripts:
> 
> # enable shadow passwds
> $ROOTCMD /sbin/shadowconfig on
> 
Thx for the hint.

But I still do not understand why it is turned off after running
debootstrap. Does FAI reset it?

greets Jimmy

-- 
Andreas "Jimmy" Gredler, jimmy at g-tec.co.at
Get my public key at www.g-tec.co.at



More information about the linux-fai mailing list