You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@directory.apache.org by "lucas theisen (JIRA)" <ji...@apache.org> on 2015/07/24 01:58:05 UTC
[jira] [Commented] (DIRSERVER-2084) Admin user should be exempt
from the pwdHistory check
[ https://issues.apache.org/jira/browse/DIRSERVER-2084?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=14639693#comment-14639693 ]
lucas theisen commented on DIRSERVER-2084:
------------------------------------------
{code}
$ svn commit
Sending interceptors/authn/src/main/java/org/apache/directory/server/core/authn/AuthenticationInterceptor.java
Sending server-integ/src/test/java/org/apache/directory/server/ppolicy/PasswordPolicyIT.java
Transmitting file data ..
Committed revision 1692456.
{code}
> Admin user should be exempt from the pwdHistory check
> -----------------------------------------------------
>
> Key: DIRSERVER-2084
> URL: https://issues.apache.org/jira/browse/DIRSERVER-2084
> Project: Directory ApacheDS
> Issue Type: Improvement
> Affects Versions: 2.0.0-M20
> Reporter: lucas theisen
>
> The [password policy RFC|http://tools.ietf.org/html/draft-behera-ldap-password-policy-10#section-8.2.6] is not very explicit, but it seems to me that an admin user account should be exempt from the pwdHistory check. For more discussion on this issue, see [this mail thread|http://mail-archives.apache.org/mod_mbox/directory-dev/201507.mbox/%3CBN1PR09MB019623C85DA310A9AC617463CD820%40BN1PR09MB0196.namprd09.prod.outlook.com%3E]
--
This message was sent by Atlassian JIRA
(v6.3.4#6332)