[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-users] using the same passwords for everything



On Thu, Jan 16, 2003 at 09:08:25AM -0500, BSmith@xxxxxxxxxxx wrote:
> -----Original Message-----
> From: Josh Kuperman [mailto:josh@xxxxxxxxxxxxxxxxxx]
> Subject: Re: [cobalt-users] using the same passwords for everything
> 
> For the htpasswd portion in your .htaccess why not point it to /etc/passwd ?
> 
> Apache knows how to authenticate from there.  Not the best thing to do, but
> it
> does work just fine.
> 

First, /etc/passwd no longer contains the encryted passwords.
/etc/shadow contains them and is only readable by root

Webmail, the webinterface, and webmin, all access that file either
directly or through the Raq interface.

I can copy the data and it does work for apache, but I would need to
find out how the other apps are authenticating against it.

-- 
Josh Kuperman                       
josh@xxxxxxxxxxxxxxxxxx