On Thu, Jun  4, 2009 at 09:02:19 +0200, Marco Amadori wrote:

> On Wednesday 03 June 2009, 16:19:14, Julien Cristau wrote:
> 
> > On Wed, Jun  3, 2009 at 08:53:21 +0200, Marco Amadori wrote:
> > > Since what it's proposed expose the password in crypted way, it seems
> > > a better approach of what we got since today.
> >
> > I think it's worse, because it gives a false sense of security.
> 
> I meant giving the hash and not the clear password on command line (hence on 
> /proc/cmdline). The hash could be md5 is not really cheap security, although 
> md5 got a bit deprecated.

I know what you meant.

> Do you have a different or a preferred solution regarding how to enter a 
> password at boot time?
> 
Nope, sorry.

Cheers,
Julien


-- 
To UNSUBSCRIBE, email to debian-live-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to