value tells the system about password expiration policy.
One of the user's maxage is 5 weeks.But he changed the password long backup at 2008 according to
lastupdate
value.
Since
maxage
is 5, the password should expire every 5 weeks.But how come
lastupdate
shows the year 2008.
Any other setting needs to be checked. Please provide your expert thoughts.
What does "maxexpired" in /etc/security/user have to say for this user? If it's -1, the user will not be forced to change the password even after the maxage duration.
Although, maxexpired is set to 5 weeks, user seemed to have been using the same password for at least two years. What about other users? Is the password policy not working for them as well or is it just for this one user?
Thanks for your time. Please find the details below
# pwdck -y ALL
3001-402 The user "invscout" has an invalid password field in /etc/passwd.
3001-414 The stanza for "invscout" was not found in /etc/security/passwd.
3001-402 The user "ipsec" has an invalid password field in /etc/passwd.
3001-414 The stanza for "ipsec" was not found in /etc/security/passwd.
3001-402 The user "lp" has an invalid password field in /etc/passwd.
3001-414 The stanza for "lp" was not found in /etc/security/passwd.
3001-402 The user "nuucp" has an invalid password field in /etc/passwd.
3001-414 The stanza for "nuucp" was not found in /etc/security/passwd.
3001-402 The user "snapp" has an invalid password field in /etc/passwd.
3001-414 The stanza for "snapp" was not found in /etc/security/passwd.
3001-402 The user "sshd" has an invalid password field in /etc/passwd.
3001-414 The stanza for "sshd" was not found in /etc/security/passwd.
3001-413 Adding "lp" stanza to /etc/security/passwd.
3001-413 Adding "invscout" stanza to /etc/security/passwd.
3001-413 Adding "snapp" stanza to /etc/security/passwd.
3001-413 Adding "ipsec" stanza to /etc/security/passwd.
3001-413 Adding "nuucp" stanza to /etc/security/passwd.
3001-413 Adding "sshd" stanza to /etc/security/passwd.
#
#
# usrck -y ALL
3001-603 The UID 0 is duplicated for user root.
3001-603 The UID 0 is duplicated for user eadmaix.
3001-661 There have been too many invalid login attempts by user daemon.
3001-661 There have been too many invalid login attempts by user bin.
3001-661 There have been too many invalid login attempts by user sys.
3001-661 There have been too many invalid login attempts by user adm.
3001-662 User uucp is locked.
3001-661 There have been too many invalid login attempts by user nobody.
3001-662 User snapp is locked.
3001-662 User ipsec is locked.
3001-662 User nuucp is locked.
3001-662 User ora9i is locked.
#