[Samba] weak password checking for samba 3 ?

Jason Balicki kodak at frontierhomemortgage.com
Fri Sep 26 19:28:27 GMT 2003



>I've got a problem with some idiots of my users :=).

Don't we all.

>They always use weak passwords. Does anyone know
>a way to find out which passwords are easy to crack?
>I mean usual passwords like god, sex, password, $username, ....

You can use John the Ripper (free) or (and I hesitate to mention
this, because of @stake's recent horrible behavior) LC4
(formerly L0phtcrack) which costs money.  (I think l0phtcrack
used to be free, if I'm not mistaken.)

John the Ripper:

http://www.openwall.com/john/

LC4:

http://www.atstake.com/research/lc/

Why you should cease business with @stake:

http://story.news.yahoo.com/news?tmpl=story&cid=1804&ncid=1804&e=3&u=/washpo
st/20030926/tc_washpost/a2328_2003sep25

There are other password cracking programs.  They're just a google 
search away.  Are you scared yet?

--J(K)




More information about the samba mailing list