Package: xscreensaver Version: 5.05-3 Followup-For: Bug #495047
This warning should only be produced when someone has actually attempted to log in - that is, hit return while the password field is displayed and selected, optionally after having modified the input fields. Merely prompting the login dialog to be displayed (whether by hitting return, when a screensaver is playing, or by bumping the table, hence causing the mouse to move) should not count as a login attempt. If the application always produces a warning, and the user gets used to ignoring the warning because it doesn't *really* mean someone tried to log in - it just means the cleaner bumped the table while sweeping the floor while I was out over-night - then the user shall *always* ignore the warning, including the times that the black hat has taken a job as a cleaner so as to try to log in to all the machines during the hours when salaried staff aren't on the premises. Once that happens, the warning is worse than useless - it not only *isn't* warning the user about anything useful, despite wasting the user's time waiting for it to go away, but it's *also* training users to ignore warnings. Programs which train users to ignore warnings help phishers and black hats by depriving the users of anything they can meaningfully recognize as a sign of potential trouble. The current behaviour is a classic example of crying "Wolf!" See: http://www.cs.auckland.ac.nz/~pgut001/pubs/usability.pdf for related observations, or http://www.cs.auckland.ac.nz/~pgut001/ generally. I'm fairly sure xscreensaver used to do this right - this must be a fairly recent change. -- System Information: Debian Release: lenny/sid APT prefers testing APT policy: (500, 'testing'), (500, 'stable') Architecture: i386 (i686) Kernel: Linux 2.6.25-2-686 (SMP w/2 CPU cores) Locale: LANG=en_GB.ISO-8859-15, LC_CTYPE=en_GB.ISO-8859-15 (charmap=ISO-8859-15) Shell: /bin/sh linked to /bin/bash Versions of packages xscreensaver depends on: ii libatk1.0-0 1.22.0-1 The ATK accessibility toolkit ii libc6 2.7-13 GNU C Library: Shared libraries ii libcairo2 1.6.4-6 The Cairo 2D vector graphics libra ii libglade2-0 1:2.6.2-1 library to load .glade files at ru ii libglib2.0-0 2.16.4-2 The GLib library of C routines ii libgtk2.0-0 2.12.11-3 The GTK+ graphical user interface ii libice6 2:1.0.4-1 X11 Inter-Client Exchange library ii libpam0g 1.0.1-2 Pluggable Authentication Modules l ii libpango1.0-0 1.20.5-1 Layout and rendering of internatio ii libsm6 2:1.0.3-2 X11 Session Management library ii libx11-6 2:1.1.4-2 X11 client-side library ii libxext6 2:1.0.4-1 X11 miscellaneous extension librar ii libxinerama1 2:1.0.3-2 X11 Xinerama extension library ii libxml2 2.6.32.dfsg-2 GNOME XML library ii libxmu6 2:1.0.4-1 X11 miscellaneous utility library ii libxpm4 1:3.5.7-1 X11 pixmap library ii libxrandr2 2:1.2.3-1 X11 RandR extension library ii libxrender1 1:0.9.4-2 X Rendering Extension client libra ii libxt6 1:1.0.5-3 X11 toolkit intrinsics library ii libxxf86misc1 1:1.0.1-3 X11 XFree86 miscellaneous extensio ii libxxf86vm1 1:1.0.2-1 X11 XFree86 video mode extension l ii xscreensaver-data 5.07-1~pre2 data files to be shared among scre Versions of packages xscreensaver recommends: ii libjpeg-progs 6b-14 Programs for manipulating JPEG fil ii miscfiles [wordlist] 1.4.2.dfsg.1-9 Dictionaries and other interesting ii perl [perl5] 5.10.0-11.1 Larry Wall's Practical Extraction ii wbritish [wordlist] 6-2.3 British English dictionary words f ii wbritish-huge [wordlis 6-2.3 British English dictionary words f ii wnorwegian [wordlist] 2.0.10-2 Norwegian word list ii xli 1.17.0+20061110-2 command line tool for viewing imag ii xloadimage 4.1-16 Graphics file viewer under X11 Versions of packages xscreensaver suggests: ii amaya [www-browser] 9.51-2.1 Web Browser, HTML Editor and Testb ii fortune-mod [fortune] 1:1.99.1-3.1 provides fortune cookies on demand ii iceweasel [www-browse 3.0.1-1 lightweight web browser based on M ii opera [www-browser] 9.52.2091.gcc4.qt3 The Opera Web Browser pn qcam | streamer <none> (no description available) ii w3m [www-browser] 0.5.2-2+b1 WWW browsable pager with excellent ii xdaliclock 2.25-1 Melting digital clock ii xfishtank 2.2-24.1 turns your X root into an aquarium ii xscreensaver-gl 5.07-1~pre2 GL(Mesa) screen hacks for xscreens -- no debconf information -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

