Subject: Re: CVS commit: src
To: None <current-users@netbsd.org>
From: Greg A. Woods <woods@most.weird.com>
List: current-users
Date: 03/16/1999 03:59:40
[ On Monday, March 15, 1999 at 17:07:42 (-0800), Bill Studenmund wrote: ]
> Subject: Re: CVS commit: src
>
> like:
> 
> 	< $MPBYUID grep -v toor |uniq -d -f 1 | awk '{ print $2 }' > $TMP2
> 
> That way you still catch duplicate root accounts.

The old "toor" *is* a duplicate root account and instantly makes it
twice as easy (statistically speaking) to guess a uid==0 password.

Please let us not repeat this mistake into 1.4 and beyond.

-- 
							Greg A. Woods

+1 416 218-0098      VE3TCP      <gwoods@acm.org>      <robohack!woods>
Planix, Inc. <woods@planix.com>; Secrets of the Weird <woods@weird.com>