On Wednesday 03 June 2009, 16:19:14, Julien Cristau wrote:

> On Wed, Jun  3, 2009 at 08:53:21 +0200, Marco Amadori wrote:
> > Since what it's proposed expose the password in crypted way, it seems
> > a better approach of what we got since today.
>
> I think it's worse, because it gives a false sense of security.

I meant giving the hash and not the clear password on command line (hence on 
/proc/cmdline). The hash could be md5 is not really cheap security, although 
md5 got a bit deprecated.

Do you have a different or a preferred solution regarding how to enter a 
password at boot time?

-- 
ESC:wq

-- 
This message has been scanned for viruses and
dangerous content by MailScanner, and is
believed to be clean.


-- 
To UNSUBSCRIBE, email to debian-live-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to