[Opendnssec-develop] Re: [OpenDNSSEC] #259: KSM interprets passwords

OpenDNSSEC owner-dnssec-trac at kirei.se
Thu Aug 11 11:30:55 UTC 2011


#259: KSM interprets passwords
--------------------+-------------------------------------------------------
Reporter:  vanrein  |        Owner:  sion    
    Type:  defect   |       Status:  new     
Priority:  minor    |    Component:  Enforcer
 Version:  1.3.0    |   Resolution:          
Keywords:           |  
--------------------+-------------------------------------------------------

Comment (by vanrein):

 Quotes can be escaped just as you are doing it in your message:

 -p'hello'"'"'s world'

 would be the quoted version of

 hello's world

 In rising levels of comfort/security:

 1. current solution with some passwords impossible (with or without r5391)
 2. a solution that accepts all passwords but uses them in the process call
 3. a solution that avoids mentioning passwords on any cmdline

 going from 1 to 2 would be useful, so yeah, please patch it; but to make
 the solution
 complete, please also quote the quote?

 -Rick

-- 
Ticket URL: <http://trac.opendnssec.org/ticket/259#comment:2>
OpenDNSSEC <http://www.opendnssec.org/>
OpenDNSSEC


More information about the Opendnssec-develop mailing list