Currently cmd5checkpw has a user of the same name at uid 212, but no group. The user owns the password database, and the binary is setuid to that user. I would like to change both to use a special group instead, so the user is not able to modify the files anymore. Since noone uses gid 212 I think it would be a good fit.
signature.asc
Description: This is a digitally signed message part.