Hello,

> Great, thanks for forwarding it.  Can you link to the upstream bug so
> this bug will track it?

The link is:

http://sourceware.org/bugzilla/show_bug.cgi?id=11134

> As to the "Wishlist", glibc nis support has always been broken, and
> having access to encrypted passwords has been a known problem for a
> long time. It seems that the passwd.adjunct.byname way of doing
> things is new, and as such, a feature request, really.  (i.e. no new
> hole, regression, etc.)  This shouldn't be seen as lack of interest or
> anything -- this is a great way for NIS to be more secure finally.  :)

As far as I know, this is not true. In glibc, the NIS shadow password
feature was introduced in libc6, the corresponding NIS map was called
shadow.byname. Sun Microsystems, the inventor of NIS, does not use a map
shadow.byname, they are using passwd.adjunct.byname since many years.
So, it seems that some glibc developers failed to take over an existing
standard.

Regards
  Christoph

-- 
getpwnam shows shadow passwords of NIS users
https://bugs.launchpad.net/bugs/499425
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to