pause on bad password

Will McDonald will at cs.wisc.edu
Thu Jun 17 14:41:54 UTC 2004


The default behavior of pam_unix_auth.so (on Linux) is to sleep for a couple
of seconds if the user enters a bad password to prevent brute force attacks. I
haven't been able to find anything on the web about this, but is there an
option to turn this behavior off (or an equivalent module that doesn't do it)?

Thanks,
-will

-- 
---------Will McDonald-----------------will at upl.cs.wisc.edu----------
GPG encrypted mail preferred. Join the web-o-trust!  Key ID: F4332B28





More information about the Pam-list mailing list