Hi Brian, Brian May schrieb: > If I save the users settings *without* going to the "Unix" settings page > no errors are produced, but the users password is changed: > > "{crypt}*" --> "{crypt}" > "{crypt}!" --> "{crypt}" > "{crypt}!password" --> "{crypt}password" > > As far as I can tell there are no security ramifications for the first > two situations, as the password is still invalid, but it very weird. > Unfortunately, it appears the last case will automatically unlock a > locked account even though I never told ldap-account-manager to do so.
thanks for your report, this will be fixed asap. Greetings, Roland -- LDAP Account Manager http://lam.sourceforge.net
signature.asc
Description: OpenPGP digital signature