[krbdev.mit.edu #6888] No explanation of failed passwd entry if REQUIRES_PWCHANGE is set

Greg Hudson via RT rt-comment at krbdev.mit.edu
Tue Mar 29 18:39:33 EDT 2011


I think this is actually a server bug.  The kpasswd server should be 
returning a soft error on a password quality failure and a hard error 
otherwise.  It was doing the right thing up until 1.7 when RFC 3244 was 
implemented, at which point the result codes were accidentally switched.



More information about the krb5-bugs mailing list