The files repository password history database could be relocated.
State
3-Accepted (Yes, that is a problem)
Category:Subcategory
pam:passwdutil
Keywords
gse-sec-team | immutable-service-containers
Reported Against
Duplicate Of
Introduced In
solaris_10
Commit to Fix
Fixed In
Release Fixed
Related Bugs
Submit Date
27-August-2008
Last Update Date
8-September-2008
Description
## 08/08/27 gww ##
In a discussion about read only loopback mounting /etc/security
into local zones it was noted that the files repository password
history database was located there and needed to be writable. One
step in removing the need for /etc/security to be writable in local
zones would be to relocate that database. Perhaps to a new
/var/security directory.
Gary..