Skip to Content.
Sympa Menu

cat-users - [[cat-users]] security fix clear text password in linux script eduroam

cat-users AT lists.geant.org

Subject: The mailing list for users of the eduroam Configuration Assistant Tool (CAT)

List archive

[[cat-users]] security fix clear text password in linux script eduroam


Chronological Thread 
  • From: "Visser,Ramon R.D." <r.visser AT fontys.nl>
  • To: Stefan Winter <stefan.winter AT restena.lu>, "cat-users AT lists.geant.org" <cat-users AT lists.geant.org>
  • Cc: "Rademaker,Hans J.G." <h.rademaker AT fontys.nl>
  • Subject: [[cat-users]] security fix clear text password in linux script eduroam
  • Date: Mon, 18 Dec 2017 13:22:08 +0000
  • Accept-language: nl-NL, en-US

Hello Stefan,

 

A colleague of me has made an suggestion for an more secure Linux configuration in case the first option based with python script fails.

 

I tried to translate his explanation: in case the first method fails the tools starts a second procedure with shell scripting.

With this method the password is stored in plaintext in the wpa_supplicant config file. Users are informed about this during the installation.

 

Following my colleague  there is an standard tool included in the wpa_supplicant suite which can hash the password in the component "wpa_passphrase".

This has been added in rules 407 en 420  of the attachment.

 

Can this be helpful for the developers?

 

Met vriendelijke groet,

 

Ramon

 

cid:image001.jpg@01D15E6A.34F41210

Ramon Visser   Virtueel Security Cluster Coördinator, Dienst IT Fontys Hogescholen
Het Eeuwsel 2, 5612 AS Gebouw S1, kamer /flex Postbus 347, 5600 AH Eindhoven
r.visser AT fontys.nl +31618390398

 

========================================================== Op deze e-mail zijn de volgende voorwaarden van toepassing: http://www.fontys.nl/disclaimer The above disclaimer applies to this e-mail message.

Attachment: eduroam-linux-Fontys_Hogescholen.sh
Description: eduroam-linux-Fontys_Hogescholen.sh




Archive powered by MHonArc 2.6.19.

Top of Page