From b613a3d57d38e72674521127e073ca6c55e06df5 Mon Sep 17 00:00:00 2001 From: Kurt Zeilenga Date: Tue, 30 Dec 2003 01:37:38 +0000 Subject: [PATCH] crypt(3) is not portable... --- doc/man/man8/slappasswd.8 | 9 +++++++-- 1 file changed, 7 insertions(+), 2 deletions(-) diff --git a/doc/man/man8/slappasswd.8 b/doc/man/man8/slappasswd.8 index 737689fbc1..931e46a527 100644 --- a/doc/man/man8/slappasswd.8 +++ b/doc/man/man8/slappasswd.8 @@ -102,11 +102,16 @@ interoperability. A new attribute type, authPassword, to hold hashed passwords has been defined (RFC 3112), but is not yet implemented in .BR slapd (8). +.TP +It should also be noted that the behavior of +.BR crypt (3) +is platform specific. .SH "SECURITY CONSIDERATIONS" Use of hashed passwords does not protect passwords during protocol transfer. TLS or other eavesdropping protections -should be inplace before using LDAP simple bind. The -hashed password values should be protected as if they +should be in\-place before using LDAP simple bind. +.TP +The hashed password values should be protected as if they were clear text passwords. .SH "SEE ALSO" .BR ldappasswd (1), -- 2.39.5