[2070] in NetBSD-Development

home help back first fref pref prev next nref lref last post

Re: A security hole in the site

daemon@ATHENA.MIT.EDU (John Hawkinson)
Fri Aug 10 12:59:04 2001

Date: Fri, 10 Aug 2001 12:58:45 -0400
From: John Hawkinson <jhawk@MIT.EDU>
To: trilokb@hotmail.com
Cc: web-request@MIT.EDU, sipb@MIT.EDU, netbsd-dev@MIT.EDU
Message-ID: <20010810125845.A18075@multics.mit.edu>
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
In-Reply-To: <200108101343.JAA10299@sicarius-spatulatus.mit.edu>

trilokb@hotmail.com <trilokb@hotmail.com> wrote on Fri, 10 Aug 2001
at 09:43:58 -0400 in <200108101343.JAA10299@sicarius-spatulatus.mit.edu>:

> I don't know if you are playing some kind of a trick or it may be a
> joke but this link:
> http://www.mit.edu/afs/sipb/system/config/passwd/i386_nbsd1/master.passwd
> contains a password which has all but the root's password
> shadowed.

Thank you, but it is no cause for concern. The password that is encrypted
there is not a secret, and it is generally not used anyway.

Good night, and have a pleasant tomorrow.

--jhawk

home help back first fref pref prev next nref lref last post