[kdc-schema] Kerberos Password Policy vs LDAP Password Policy

Leif Johansson leifj at it.su.se
Wed Jul 30 06:44:11 EDT 2003

Ludovic Poitou wrote:

> I agree.
> However, I don't believe there are a very common way to express 
> password quality. Each organization has it's own opinion of the 
> minimum quality and way to express it.
> Classes of characters is one way. Some other ways include more 
> explicit Lower and Upper Case characters, number of characters in each 
> class and even positioning of these class of characters, checking 
> against specific dictionaries....
> Ludovic.
Again I agree. I think this is a type of policy which just has an oid 
and leave the rest as
an extension.


More information about the kdc-schema mailing list