Subject: Re: The system allows user entering without full password
To: Sergey <forum_s@bk.ru>
From: Brett Lymn <blymn@baesystems.com.au>
List: tech-security
Date: 12/19/2006 21:55:49
On Tue, Dec 19, 2006 at 04:18:43PM +0500, Sergey wrote:
> 
> The system allows user entering without full password. It's enough 8 symbols. Full passowrd has 20 symbols.
> 
> System: NetBSD3.0
> 

It sounds like you are using the "old" DES encryption for your
password hash.  What does your /etc/passwd.conf say?

-- 
Brett Lymn