Path: utzoo!utgpu!jarvis.csri.toronto.edu!rutgers!mcnc!rti!tijc02!cgh018 From: cgh018@tijc02.UUCP (Calvin Hayden ) Newsgroups: comp.unix.questions Subject: Re: Passwords and salts Message-ID: <852@tijc02.UUCP> Date: 15 Jan 90 12:54:56 GMT References: <1974@syma.sussex.ac.uk> Organization: Texas Instr., Johnson City TN Lines: 15 From article <1974@syma.sussex.ac.uk>, by andy@syma.sussex.ac.uk (Andy Clews): > From article <85606@linus.UUCP>, by ccel@chance.uucp (CCEL): >> To be responsible, I would be reluctant to distribute the source to >> anyone who is NOT a system administrator on their machine. > > Hmm, so how do you propose to check this? Will you believe anyone who just > says "I am a system administrator" in their message? > Good point. If <85606@linus.UUCP> is set on doing this then the least he can do is to only send to a root (or superuser equivalent) address. Still doesn't insure true security, and that superuser may abuse this on some other system, it not now then later. I also agree with an earlier posting - that this is a fairly trivial program to write. Cal