|
From: Serge L. <ser...@gm...> - 2012-04-06 16:20:30
|
Heiko, our current "login" apparently ignores /etc/login.defs. We can replace it by binary from the last util-linux (from the description - it should use /etc/login.defs AND use pam), but it's a bit more "serious" change. I checked on my systems that this modification is enough to start using sha512 (and it doesn't break old md5 hashes of course). So, we don't need to change /etc/login.defs , but we can :) And actually you are right - it's better to keep the system settings consistent. Serge On 04/06/2012 04:54 AM, Heiko Zuerker wrote: > Serge, > > Don't we also need to change /etc/login.defs ? > ENCRYPT_METHOD SHA512 > > Or is that not required with PAM ? > |