ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Password Strength vs Expiration

    Scheduled Pinned Locked Moved IT Discussion
    7 Posts 2 Posters 1.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • thanksajdotcomT
      thanksajdotcom
      last edited by

      I feel like we've had this discussion before but it's worth noting again...longer, stronger passwords are far more effective than making a user change their password every 90 days. When it comes to breaking passwords, it's not about complexity. It's about length. Interestingly enough, I saw a company today that actually made that exact point: Facebook.
      upload-9708bb78-60f2-4fc1-bdf7-2b5366bed373

      While they didn't mention length, they talked about strength. A non-complex password that is longer beats a shorter, complex password. Complexity fools people but not computers. I'm sure we've all seen the XKCD comic:

      But I just saw that today and felt the point was worth repeating, because so many companies don't seem to get it...

      1 Reply Last reply Reply Quote 1
      • dafyreD
        dafyre
        last edited by

        I like websites that allow spaces in the passwords. This makes for some easy to remember, yet hard to guess phrases.

        1 Reply Last reply Reply Quote 1
        • thanksajdotcomT
          thanksajdotcom
          last edited by

          @dafyre said:

          I like websites that allow spaces in the passwords. This makes for some easy to remember, yet hard to guess phrases.

          I still regularly run into sites that have password length caps. I've even seen caps as low as ten characters as recently as the past couple weeks!

          dafyreD 1 Reply Last reply Reply Quote 1
          • dafyreD
            dafyre @thanksajdotcom
            last edited by

            @thanksajdotcom Sadly, that makes two of us.

            thanksajdotcomT 1 Reply Last reply Reply Quote 0
            • thanksajdotcomT
              thanksajdotcom @dafyre
              last edited by

              @dafyre said:

              @thanksajdotcom Sadly, that makes two of us.

              What made it worse was it also allowed no special characters. All I could think is "what is this antiquated system they are on?!"

              dafyreD 1 Reply Last reply Reply Quote 0
              • dafyreD
                dafyre @thanksajdotcom
                last edited by

                @thanksajdotcom KeePass to the rescue, lol.

                thanksajdotcomT 1 Reply Last reply Reply Quote 1
                • thanksajdotcomT
                  thanksajdotcom @dafyre
                  last edited by

                  @dafyre said:

                  @thanksajdotcom KeePass to the rescue, lol.

                  LastPass here, but yup!

                  1 Reply Last reply Reply Quote 0
                  • 1 / 1
                  • First post
                    Last post