Hi Brian,

Brian May schrieb:
> If I save the users settings *without* going to the "Unix" settings page
> no errors are produced, but the users password is changed:
> 
> "{crypt}*" --> "{crypt}"
> "{crypt}!" --> "{crypt}"
> "{crypt}!password" --> "{crypt}password"
> 
> As far as I can tell there are no security ramifications for the first
> two situations, as the password is still invalid, but it very weird.
> Unfortunately, it appears the last case will automatically unlock a
> locked account even though I never told ldap-account-manager to do so.

thanks for your report, this will be fixed asap.


Greetings,
Roland


-- 

LDAP Account Manager
http://lam.sourceforge.net

Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to