Click here to Skip to main content
14,541,715 members

Welcome to the Lounge

   

For discussing anything related to a software developer's life but is not for programming questions. Got a programming question?

The Lounge is rated Safe For Work. If you're about to post something inappropriate for a shared office environment, then don't post it. No ads, no abuse, and no programming questions. Trolling, (political, climate, religious or whatever) will result in your account being removed.
 
GeneralRe: Password policy Pin
Dr.Walt Fair, PE8-Mar-18 5:35
subeditorDr.Walt Fair, PE8-Mar-18 5:35 
GeneralRe: Password policy Pin
Greg Bair9-Mar-18 2:17
professionalGreg Bair9-Mar-18 2:17 
GeneralRe: Password policy Pin
rnbergren9-Mar-18 4:01
Memberrnbergren9-Mar-18 4:01 
GeneralRe: Password policy Pin
Gerry Schmitz9-Mar-18 7:55
mveGerry Schmitz9-Mar-18 7:55 
GeneralRe: Password policy Pin
Nish Nishant10-Mar-18 7:33
sitebuilderNish Nishant10-Mar-18 7:33 
GeneralRe: Password policy Pin
smcnulty200010-Mar-18 7:34
Membersmcnulty200010-Mar-18 7:34 
GeneralRe: Password policy Pin
thewazz10-Mar-18 23:30
professionalthewazz10-Mar-18 23:30 
GeneralRe: Password policy Pin
pmauriks14-Mar-18 17:06
Memberpmauriks14-Mar-18 17:06 
Both.

Password management is more complicated than that - and it inevitably suffers from being distilled down to what the end user can understand.

Password length is usually set to a period and length that exceeds the time a given computer can brute force the password. In other words - if a reasonable adversary can crack the password on a fast PC in 30 days, then either the password needs to be longer, or you need to change it sooner. Of course - explaining this to people can be complicated - and enforcing complex rules for passwords like, if it's 8 characters it needs to be changed every 10 days, and if it's 9 characters then every 30 are also not possible on most systems.

So people try to generalize.

If you explain to them for example that you have 15 character passwords, and cracking them brute force is just not practical - you have processes to change them when key people who know the password leave, (or if the crypto were to be broken), then perhaps you could have your approach risk accepted. In practice this will probably save you a lot of effort - and you will end up with better passwords as well.

Hope that helps.
GeneralCCC Pin
Werewolf27-Mar-18 21:46
MemberWerewolf27-Mar-18 21:46 
GeneralRe: CCC Pin
OriginalGriff7-Mar-18 21:55
mveOriginalGriff7-Mar-18 21:55 
GeneralRe: CCC Pin
Werewolf27-Mar-18 21:57
MemberWerewolf27-Mar-18 21:57 
GeneralRe: CCC Pin
OriginalGriff7-Mar-18 22:12
mveOriginalGriff7-Mar-18 22:12 
GeneralRe: CCC Pin
Werewolf27-Mar-18 22:38
MemberWerewolf27-Mar-18 22:38 
GeneralRe: CCC Pin
OriginalGriff7-Mar-18 22:48
mveOriginalGriff7-Mar-18 22:48 
GeneralRe: CCC Pin
Werewolf27-Mar-18 23:09
MemberWerewolf27-Mar-18 23:09 
GeneralBusiness Casual is difficult? Pin
super7-Mar-18 21:45
professionalsuper7-Mar-18 21:45 
GeneralRe: Business Casual is difficult? Pin
Mark Parity7-Mar-18 21:56
MemberMark Parity7-Mar-18 21:56 
GeneralRe: Business Casual is difficult? Pin
Kornfeld Eliyahu Peter7-Mar-18 22:12
mveKornfeld Eliyahu Peter7-Mar-18 22:12 
GeneralRe: Business Casual is difficult? Pin
PeejayAdams7-Mar-18 22:40
MemberPeejayAdams7-Mar-18 22:40 
GeneralRe: Business Casual is difficult? Pin
Mycroft Holmes7-Mar-18 22:54
professionalMycroft Holmes7-Mar-18 22:54 
GeneralRe: Business Casual is difficult? Pin
Daniel Pfeffer8-Mar-18 0:17
professionalDaniel Pfeffer8-Mar-18 0:17 
GeneralRe: Business Casual is difficult? Pin
lopatir8-Mar-18 0:38
Memberlopatir8-Mar-18 0:38 
GeneralRe: Business Casual is difficult? Pin
PIEBALDconsult8-Mar-18 1:39
professionalPIEBALDconsult8-Mar-18 1:39 
GeneralRe: Business Casual is difficult? Pin
Nathan Minier8-Mar-18 1:56
professionalNathan Minier8-Mar-18 1:56 
GeneralRe: Business Casual is difficult? Pin
Slacker0078-Mar-18 2:09
professionalSlacker0078-Mar-18 2:09 

General General    News News    Suggestion Suggestion    Question Question    Bug Bug    Answer Answer    Joke Joke    Praise Praise    Rant Rant    Admin Admin   

Use Ctrl+Left/Right to switch messages, Ctrl+Up/Down to switch threads, Ctrl+Shift+Left/Right to switch pages.