1834732 Members
3147 Online
110070 Solutions
New Discussion

Re: passwd ageing

 
SOLVED
Go to solution
navin
Super Advisor

passwd ageing

hello ,i set up passwd ageing for the root account .Even though the passwd has expired able to become root but could not ftp to the system using root account from other systems.Should i be able to use ftp once i reset the passwd ? how come i'm able to su with expired passwd.
thanks in advance.
Learning ...
4 REPLIES 4
Khashru
Valued Contributor
Solution

Re: passwd ageing

can you make a new connection after your password expired? or you are using your connected terminal. If you are root and do a su then it will not check password file.
navin
Super Advisor

Re: passwd ageing

i'm connecting in different terminal , su from normal to root account.
thanks
Learning ...
Jaime Bolanos Rojas.
Honored Contributor

Re: passwd ageing

Navin, are you using password ageing with a trusted system or non trusted.

If it is non-trusted please specified configuration to help you out.

Regards,

Jaime.
Work hard when the need comes out.
Steven E. Protter
Exalted Contributor

Re: passwd ageing

Shalom,

ftp can be blocked for a totally different reason.

the ftpaccess file is commonly set to deny root access.

Why?

Because ftp transmits authentication data in clear text.

So when you ftp as user root you send the ROOT PASSWORD IN CLEAR TEXT.

So
ANYONE CAN READ IT AND GAIN ROOT ACCESS

This is considered a bad security practice.

Use ssh or telnet to validate the root account is active.

Use a different user account for ftp.

SEP
Steven E Protter
Owner of ISN Corporation
http://isnamerica.com
http://hpuxconsulting.com
Sponsor: http://hpux.ws
Twitter: http://twitter.com/hpuxlinux
Founder http://newdatacloud.com