All users are reported as having weak passwords. (NETIQKB34603)

  • 7734603
  • 02-Feb-2007
  • 21-Sep-2007

Resolution

fact
VigilEnt Security Agent for Unix 4.0

symptom
All users are reported as having weak passwords.

cause
This issue cccurs when MD5 password hashing is enabled on Linux. Password hashing encrypts passwords and prevents agents from detecting weak passwords.

fix

This issue has been resolved in VSAU_4.0_Hotfix_34603(Patch 4.0.8). This Hotfix contains a patch that you apply to agent computers using  the Patch Manager. This patch corrects an issue that occurs when MD5 password hashing is enabled on Linux. Password hashing encrypts passwords and prevents agents from detecting weak passwords.  This Hotfix lets agents check encrypted passwords against unencrypted words in the password dictionary.

Please contact NetiQ Technical Support for this patch.

Install Instructions:

  1. Download the Hotfix to the Utility Console or VSM/VSOC computer.
  2. Start the 'Utility Console' or 'VSM'.
  3. Open the 'Agent Manager' utility.
  4. Click Hosts | Update Programs to open the Patch Manager.
  5. Click Load, navigate to the Hotfix file, and click OK.
  6. Select all hosts in the Hosts Running uAgent list, and select 4.0.8 in the Patches Available list.
  7. Click Apply.
  8. When the update completes, click Close to close the Patch Manager.


note

Prerequisites:
Patch 4.0.3 (VSAU_4.0_Hotfix_33198.zip, Utility Console computers only VSAU_4.0_Hotfix_33198
Patch 4.0.4 (VSAU_4.0_Hotfix_33199.zip) VSAU_4.0_Hotfix_33199
Patch 4.0.5 (VSAU_4.0_Hotfix_33787.zip) VSAU_4.0_Hotfix_33787



Additional Information

Formerly known as NETIQKB34603