chkusr/README.md

114 lines
2.7 KiB
Markdown
Raw Permalink Normal View History

2025-06-04 18:43:26 +02:00
# chkpwd
2024-08-10 06:03:34 +02:00
2025-06-04 18:43:26 +02:00
chkpwd is a program that checks the validity of a users password on a UNIX/[PAM](https://en.wikipedia.org/wiki/Pluggable_Authentication_Module)-based system.
2024-08-10 06:08:41 +02:00
2025-06-04 18:43:26 +02:00
Currently chkpwd is only tested on Linux, but it should work on a [AIX](https://en.wikipedia.org/wiki/IBM_AIX), [DragonFly BSD](https://www.dragonflybsd.org/), [FreeBSD](https://www.freebsd.org/), [HP-UX](https://en.wikipedia.org/wiki/HP-UX), [Linux](https://kernel.org/), [macOS](https://en.wikipedia.org/wiki/MacOS), [NetBSD](https://netbsd.org/) and [Solaris](https://en.wikipedia.org/wiki/Oracle_Solaris) operating system too.
2024-09-25 23:09:41 +02:00
## The idea
2024-08-10 23:38:07 +02:00
2025-01-01 07:31:22 +01:00
I needed a program to verify passwords of users on Linux/UNIX systems using PAM that just returns 0 on success and 1 on error.
2024-08-17 23:07:57 +02:00
2025-05-30 04:17:15 +02:00
## Requirements
You need the PAM development package installed. On Alpine it is named linux-pam-dev, on Debian based systems it is libpam0g-dev.
2025-06-04 18:43:26 +02:00
## Building chkpwd
2024-08-17 23:07:57 +02:00
2024-08-10 23:38:07 +02:00
```
2025-06-04 18:43:26 +02:00
git clone https://git.xw3.org/hanez/chkpwd.git
cd chkpwd
2024-08-10 23:38:07 +02:00
make
```
2025-06-04 18:43:26 +02:00
The code only supports verifying passwords for user id 1000 by default. Look at the file chkpwd.h for some compile time options!
2024-08-17 23:07:57 +02:00
### Custom build example
2024-08-28 18:16:59 +02:00
Set MAX_UID and MIN_UID at compile time:
2024-08-17 23:07:57 +02:00
```
2025-06-04 18:43:26 +02:00
gcc -Wall -DMAX_UID=1000 -DMIN_UID=1000 -o chkpwd chkpwd.c -lpam -lpam_misc
2024-08-17 23:07:57 +02:00
```
## Installation
2025-06-04 18:43:26 +02:00
**WARNING:** Install this software with care. chkpwd could easily be used for bruteforcing passwords from local users!
```
sudo make install
```
2025-06-04 18:43:26 +02:00
chkpwd is installed to /usr/bin/.
2025-06-04 18:43:26 +02:00
chkpwd.h is installed to /usr/include/ for use in other applications.
## Uninstall
```
sudo make uninstall
```
## Usage
2024-08-10 15:55:11 +02:00
```
2025-06-04 18:43:26 +02:00
chkpwd -h
Usage: chkpwd [-u <username>] [-p <password>] [-v] [-V] [-h]
2024-08-10 15:52:47 +02:00
Options:
2025-01-01 07:19:45 +01:00
-u <username> Set username.
-p <password> Set password.
2024-08-10 15:52:47 +02:00
-v Enable verbose mode.
-V Print program version.
2024-08-18 01:02:34 +02:00
-h Show this help.
2024-08-10 15:52:47 +02:00
```
2025-06-04 18:43:26 +02:00
You can also use chkpwd even without installing by just running the following command:
2024-08-18 02:03:29 +02:00
```
2025-06-04 18:43:26 +02:00
./chkpwd
2024-08-18 02:03:29 +02:00
```
2025-01-11 04:42:45 +01:00
### Return codes
2025-06-04 18:43:26 +02:00
chkpwd returns 0 on success, 1 otherwise.
### Examples
#### Interactive mode asking for a username and a password
2024-08-18 02:03:29 +02:00
```
2025-06-04 18:43:26 +02:00
chkpwd
2024-08-18 02:03:29 +02:00
```
#### Interactive mode only asking for a password
```
2025-06-04 18:43:26 +02:00
chkpwd -u hanez
```
2025-06-04 18:43:26 +02:00
#### None interactive mode with username and password provided as arguments to chkpwd
2024-08-18 02:03:29 +02:00
```
2025-06-04 18:43:26 +02:00
chkpwd -u hanez -p password
2024-08-18 02:03:29 +02:00
```
#### Request the result from the above commands
2024-08-18 02:03:29 +02:00
2024-08-10 15:54:14 +02:00
```
echo $?
```
2024-08-10 22:12:47 +02:00
2025-01-01 06:43:23 +01:00
## License
2025-06-04 18:43:26 +02:00
chkpwd is licensed under the Apache License, Version 2.0.
2025-01-01 06:43:23 +01:00
2025-01-01 06:46:29 +01:00
See LICENSE for details.
2025-01-01 06:43:23 +01:00
## Links
2024-08-20 17:52:42 +02:00
2025-06-04 18:43:26 +02:00
- [https://git.xw3.org/hanez/chkpwd](https://git.xw3.org/hanez/chkpwd)
- [https://linux.die.net/man/8/unix_chkpwdd](https://linux.die.net/man/8/unix_chkpwd)
2024-08-20 17:52:42 +02:00
- [https://cr.yp.to/checkpwd.html](https://cr.yp.to/checkpwd.html)
- [https://pamtester.sourceforge.net/](https://pamtester.sourceforge.net/)
2024-08-20 17:52:42 +02:00