sara2005 has asked for the wisdom of the Perl Monks concerning the following question:
Hello Monks,
I have set-up a web page (intranet) which validates the user's unix password for authentication. All I do is get the userid /password and try to ftp to the unix server using Net::FTP. I allow or deny further access based on the return value. To further tighten up, I am planning to have an authorized users list, which the program will first check before trying the ftp.
I am just curious to know if there are any security issues with this because the important CTQ is to use the Unix ID for validation?
Would appreciate your thoughts on this.
|
|---|
| Replies are listed 'Best First'. | |
|---|---|
|
Re: Unix Password for validation
by CountOrlok (Friar) on Nov 17, 2005 at 17:02 UTC | |
|
Re: Unix Password for validation
by blue_cowdawg (Monsignor) on Nov 17, 2005 at 17:07 UTC | |
|
Re: Unix Password for validation
by idsfa (Vicar) on Nov 17, 2005 at 17:12 UTC | |
|
Re: Unix Password for validation
by radiantmatrix (Parson) on Nov 17, 2005 at 18:18 UTC | |
by sara2005 (Scribe) on Nov 17, 2005 at 19:59 UTC |