OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Password Generation during RH Linux 6.x Installation
From: William R. Lorenz (wrlSUMMITPRO.COM)
Date: Wed Jun 07 2000 - 10:21:42 CDT


BugTraq'ers,

It seems as though, when entering a root password during RH Linux 6.x
installation, the generated password, stored in the shadowed passwords file
(/etc/shadow) does not contain a salt. This has occured on three separate
machines, and after the root password is changed using the `passwd` command,
the salt is included in the encrypted password, as it should be. Can anyone
confirm this observation and provide more details? Thanks, in advance.

--
"The rewards in business go to the man who does
      something with an idea." - William Benton