DaemonForums  

Go Back   DaemonForums > DaemonForums.org > News

News News regarding BSD and related.

Reply
 
Thread Tools Display Modes
  #1   (View Single Post)  
Old 28th April 2014
J65nko J65nko is offline
Administrator
 
Join Date: May 2008
Location: Budel - the Netherlands
Posts: 3,142
Thanked 182 Times in 149 Posts
Default Stanford’s password policy shuns one-size-fits-all security

From http://arstechnica.com/security/2014...-all-security/

Quote:
Stanford University network engineers have unveiled a refreshingly enlightened password policy. By allowing extremely long passcodes and relaxing character complexity requirements as length increases, the new standards may make it easier to choose passwords that resist the most common types of cracking attacks.
__________________
You don't need to be a genius to debug a pf.conf firewall ruleset, you just need the guts to run tcpdump
Reply With Quote
  #2   (View Single Post)  
Old 30th April 2014
IdOp's Avatar
IdOp IdOp is offline
Too dumb for a smartphone
 
Join Date: May 2008
Location: twisting on the daemon's fork(2)
Posts: 562
Thanked 14 Times in 13 Posts
Default

A non-technical article on the topic of password policy choice,

Why Canada's banks have weaker passwords than Twitter or Google

It seems to come down to cost of (a) attracting and retaining customers, and (b) insurance.

Still, even if they want to let people use a bad password, for their (short term) convenience, why can't they support better passwords for those willing to use them?
Reply With Quote
  #3   (View Single Post)  
Old 30th April 2014
thirdm thirdm is offline
Package Pilot
 
Join Date: May 2009
Posts: 198
Thanked 3 Times in 3 Posts
Default

Quote:
Originally Posted by IdOp View Post
Still, even if they want to let people use a bad password, for their (short term) convenience, why can't they support better passwords for those willing to use them?
Because it won't fit in a PIC 999999?

Last edited by thirdm; 30th April 2014 at 09:40 PM. Reason: be less optimistic.
Reply With Quote
Reply

Tags
password, password strength

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Security 'High impact' Gmail password security hole blew accounts wide open J65nko News 0 23rd November 2013 12:06 PM
Security Content Security Policy halts XSS in its tracks J65nko News 0 22nd June 2013 09:04 PM
IP Security Policy Management snap-in wesley OpenBSD Security 2 11th August 2009 04:34 AM
Enforce a better user password policy anomie Guides 8 7th November 2008 09:10 PM
A failure in password security TerryP Off-Topic 3 25th September 2008 03:19 AM


All times are GMT. The time now is 03:07 PM.


Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2014, Jelsoft Enterprises Ltd.
Content copyright © 2007-2010, the authors
Daemon image copyright ©1988, Marshall Kirk McKusick