Re: [BUGS] user authentication crash by Erik Luke

Поиск
Список
Период
Сортировка
От Oliver Elphick
Тема Re: [BUGS] user authentication crash by Erik Luke
Дата
Msg-id 200111011734.fA1HY1YT000762@linda.lfix.co.uk
обсуждение исходный текст
Ответ на Re: [BUGS] user authentication crash by Erik Luke (20-08-2001; 1.3kb)  (Tom Lane <tgl@sss.pgh.pa.us>)
Список pgsql-hackers
Tom Lane wrote: >Hmm.  I can see how a linefeed in a password would create a problem (it >breaks the line-oriented
formattingof the pg_pwd file). 
 
... >In any case it seems like it'd be a good idea to forbid nonprinting >characters in passwords.  Comments anyone?

That sounds too restrictive; allowing non-printing characters should
improve password security.  Why not simply exclude linefeed and
carriage return?  (And possibly ctrl-Q and ctrl-S as well, in case there
is still anyone running a terminal with XON/XOFF flow control.)

-- 
Oliver Elphick                                Oliver.Elphick@lfix.co.uk
Isle of Wight                              http://www.lfix.co.uk/oliver
GPG: 1024D/3E1D0C1C: CA12 09E0 E8D5 8870 5839  932A 614D 4C34 3E1D 0C1C
    "But they that wait upon the LORD shall renew their      strength; they shall mount up with wings as eagles;
theyshall run, and not be weary; and they shall walk,     and not faint."            Isaiah 40:31 
 




В списке pgsql-hackers по дате отправления:

Предыдущее
От: Tom Lane
Дата:
Сообщение: Re: [BUGS] user authentication crash by Erik Luke (20-08-2001; 1.3kb)
Следующее
От: "Mr. Shannon Aldinger"
Дата:
Сообщение: Re: Posgresql 7.2b1 crashes