Pelican Parts
Parts Catalog Accessories Catalog How To Articles Tech Forums
Call Pelican Parts at 888-280-7799
Shopping Cart Cart | Project List | Order Status | Help



Go Back   Pelican Parts Forums > Miscellaneous and Off Topic Forums > Off Topic Discussions


Reply
 
LinkBack Thread Tools Rate Thread
Author
Thread Post New Thread    Reply
Registered
 
aap1966's Avatar
 
Join Date: Dec 2001
Location: Australia
Posts: 2,518
Garage
I.T. guys, what am I missing here?

So, at my workplace we have to change our log on passwords every 6 weeks.
Irritating, but I can see why.
It's always been at least 6 characters, a mix of upper & lower case and numbers, and not one we've used in the last 6 months.
OK, also cool.

But when we try to change it, if it's not accepted we just get a "new password does not comply with security requirements'. So we try again. The other day after 5 attempts I had got to 13 characters including 5 numbers and 3 capitals, 2 special characters, still not accepted. No names, no relation to the industry, no "PA55WORD" type attempts.

So I ring IT to ask just what ARE the new security requirements?
"We can't tell you, because...security, but we can just reset it for you if you want"
"Great, so what's it to be?"

"Hello1"



Err,.......OK thanks.

__________________
(As for) Michael Moore:Calling that lying liberal POS propaganda a documentary is like calling PARF the library of congress.

I knew it would happen, just not so soon...........

Last edited by aap1966; 03-05-2019 at 12:14 AM..
Old 03-05-2019, 12:08 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #1 (permalink)
Feelin' Solexy
 
Tishabet's Avatar
 
Join Date: Oct 2003
Location: WA
Posts: 3,801
__________________
Grant
In the stable: 1938 Buick Special model 41, 1963 Solex 2200, 1973 Vespa Primavera 125, 1974 Vespa Rally 200, 1986 VW Vanagon Syncro Westfalia, 1989 VW Doka Tristar, 2011 Pursuit 315 OS, 2022 Tesla Y
Gone but not forgotten: 1973 VW Beetle, 1989 Porsche 944, 2008 R56 Mini Cooper S
Old 03-05-2019, 01:05 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #2 (permalink)
Registered
 
wdfifteen's Avatar
 
Join Date: Mar 2008
Location: SW Ohio
Posts: 29,480
Garage
Dreaming up new passwords is always a problem for me. Ive started copying characters off of ads and things that pop up on screen. To remember I take a screen shot of it. Using the post above as an example, I’d have a password, “1000GUESSES/sec”
__________________
.
Old 03-05-2019, 01:18 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #3 (permalink)
?
 
Join Date: Apr 2002
Posts: 30,684
When I was in IT, we had key fobs with dynamic passwords for a lot of stuff. The processing power to crunch through password "guessing" has surpasaed the old daze imo...

I use long sentences.....the longer the better to increase the difficulty, easy to remember, and with some special characters thrown in....

KCisahugebiglydummywithno$butstillnumber9

Never written down a password in my life....could use the serial # from my Schwinn decades ago too ...way too short
Old 03-05-2019, 01:57 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #4 (permalink)
Registered
 
Join Date: Sep 2009
Location: North of You
Posts: 9,160
Find a password that works and add two digits at the end. Increment the digits monthly.

Or use your initials (uppercase) '@' then a lower case word, plus two digits. That usually works and easy to remember.
__________________
"A machine you build yourself is a vote for a different way of life. There are things you have to earn with your hands."
Old 03-05-2019, 04:51 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #5 (permalink)
?
 
Join Date: Apr 2002
Posts: 30,684
Quote:
Originally Posted by 1990C4S View Post
Find a password that works and add two digits at the end. Increment the digits monthly.

Or use your initials (uppercase) '@' then a lower case word, plus two digits. That usually works and easy to remember.
Not nearly long enough...seriously.

It's just 1s and 0s at the end of the day....todays processing power overpowers shorter passwords...8 characters isn't long enough anymore...jmo.
Old 03-05-2019, 04:55 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #6 (permalink)
 
Back in the saddle again
 
masraum's Avatar
 
Join Date: Oct 2001
Location: Central TX west of Houston
Posts: 56,411
"We can't tell you, because...security"

That's stupid BS. Someone at your company is a moron.
__________________
Steve
'08 Boxster RS60 Spyder #0099/1960
- never named a car before, but this is Charlotte.
'88 targa SOLD 2004 - gone but not forgotten
Old 03-05-2019, 05:15 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #7 (permalink)
Back in the saddle again
 
masraum's Avatar
 
Join Date: Oct 2001
Location: Central TX west of Houston
Posts: 56,411
Quote:
Originally Posted by Tishabet View Post
^Absolutely true^
Quote:
Originally Posted by 1990C4S View Post
Find a password that works and add two digits at the end. Increment the digits monthly.

Or use your initials (uppercase) '@' then a lower case word, plus two digits. That usually works and easy to remember.
^Absolutely true^
__________________
Steve
'08 Boxster RS60 Spyder #0099/1960
- never named a car before, but this is Charlotte.
'88 targa SOLD 2004 - gone but not forgotten
Old 03-05-2019, 05:16 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #8 (permalink)
?
 
Join Date: Apr 2002
Posts: 30,684
Make 'em longer guys....I'm just sayin'

8 characters isn't long enough....
Old 03-05-2019, 05:20 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #9 (permalink)
Registered
 
MBAtarga's Avatar
 
Join Date: Jul 2001
Location: Lawrenceville GA 30045
Posts: 7,384
Quote:
Originally Posted by 1990C4S View Post
Find a password that works and add two digits at the end. Increment the digits monthly.

Or use your initials (uppercase) '@' then a lower case word, plus two digits. That usually works and easy to remember.
Most systems require 3 characters to change for each new password timeout period. Incrementing the numbers won't be accepted.
__________________
Mark

'83 SC Targa - since 5/5/2001
'06 911 S Aerokit - from 5/2/2016 to 11/14/2018
'11 911 S w/PDK - from 7/2/2021 to ???
Old 03-05-2019, 05:34 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #10 (permalink)
Registered
 
T77911S's Avatar
 
Join Date: Oct 2006
Location: MYR S.C.
Posts: 17,321
Quote:
Originally Posted by aap1966 View Post
So, at my workplace we have to change our log on passwords every 6 weeks.
Irritating, but I can see why.
It's always been at least 6 characters, a mix of upper & lower case and numbers, and not one we've used in the last 6 months.
OK, also cool.

But when we try to change it, if it's not accepted we just get a "new password does not comply with security requirements'. So we try again. The other day after 5 attempts I had got to 13 characters including 5 numbers and 3 capitals, 2 special characters, still not accepted. No names, no relation to the industry, no "PA55WORD" type attempts.

So I ring IT to ask just what ARE the new security requirements?
"We can't tell you, because...security, but we can just reset it for you if you want"
"Great, so what's it to be?"

"Hello1"



Err,.......OK thanks.

yea, I love it.
I go through the same crap.

I have ones that start 30 days out telling me my password will expire. thing is, if I DONT change it it does not come up with the change password screen, it locks me out,

then I have ones that when I DO change my password it logs me out for 15min after changing it.

I have a list of around 40 passwords I have to keep track of,

now they gave us Iphones that have the thumb print to get into it with, I STILL have a password and I just had to change THAT one.
most of the time I have to use the password to get into it instead of my print.
then I have a password for software updates on it and I don't remember it so I cant get rid of the annoying software update notification.

I have 2 passwords just to turn on my computer plus an ID badge that goes in it.


years ago we had a program that you had to enter a password to generate a password
__________________
86 930 94kmiles [__] RUNNING:[__] NOT RUNNING: ____77 911S widebody: SOLD
88 BMW 325is 200K+ SOLD
03 BMW 330CI 220K:: [__] RUNNING: [__] NOT RUNNING:
01 suburban 330K:: [__] RUNNING: [__] NOT RUNNING:
RACE CAR:: sold
Old 03-05-2019, 05:35 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #11 (permalink)
Back in the saddle again
 
masraum's Avatar
 
Join Date: Oct 2001
Location: Central TX west of Houston
Posts: 56,411
Quote:
Originally Posted by KC911 View Post
Not nearly long enough...seriously.

It's just 1s and 0s at the end of the day....todays processing power overpowers shorter passwords...8 characters isn't long enough anymore...jmo.
Not enough to really be secure, but enough to satisfy the avg corp IT Sec person.

Just have to make sure that if you use a phrase/sentence, it's not a line from your favorite song/story/poem or even a random line of text from any book or written text because if it's out there written down somewhere, they can and will try it.

Quote:
Originally Posted by KC911 View Post
Make 'em longer guys....I'm just sayin'

8 characters isn't long enough....
Unfortunately, there are still some places that have length limits.
__________________
Steve
'08 Boxster RS60 Spyder #0099/1960
- never named a car before, but this is Charlotte.
'88 targa SOLD 2004 - gone but not forgotten
Old 03-05-2019, 05:36 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #12 (permalink)
 
Back in the saddle again
 
masraum's Avatar
 
Join Date: Oct 2001
Location: Central TX west of Houston
Posts: 56,411
Quote:
Originally Posted by MBAtarga View Post
Most systems require 3 characters to change for each new password timeout period. Incrementing the numbers won't be accepted.
I haven't had that experience
__________________
Steve
'08 Boxster RS60 Spyder #0099/1960
- never named a car before, but this is Charlotte.
'88 targa SOLD 2004 - gone but not forgotten
Old 03-05-2019, 05:38 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #13 (permalink)
It'll be legen-waitforit
 
stealthn's Avatar
 
Join Date: Jan 2002
Location: Calgary, Canada
Posts: 7,016
Does your IT reside in Mumbai?
__________________
Bob James
06 Cayman S - Money Penny
18 Macan GTS
Gone: 79 911SC, 83 944, 05 Cayenne Turbo, 10 Panamera Turbo
Old 03-05-2019, 05:40 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #14 (permalink)
D idn't E arn I t
 
RANDY P's Avatar
I'll bet the special characters are what's hanging you up. It's not just any special character- only some are acceptable.

Also, if the password is too complex and too many changes required, that means people will start using post-it's on the computer. Remind em of that.
__________________
AOC/Hogg 2028
Old 03-05-2019, 06:54 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #15 (permalink)
Registered
 
id10t's Avatar
 
Join Date: Mar 2003
Posts: 10,383
Come up with a pass sentence or saying, and then abbreviate it.

"The formula to convert temperatures is 5f minus 9c is equal to 160"

TheFtcTemps:5f-9c=160
Old 03-05-2019, 07:18 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #16 (permalink)
Registered
 
Deschodt's Avatar
 
Join Date: Oct 2004
Location: CA
Posts: 5,888
The problem with "correct Horse Battery staple" above is most places won't let you. They ask for some all caps, some number, $#^*% characters, and will also we wise to number substitution at the end... (you cannot increment your password at my last 2 jobs, it knows and tells you it's too similar)

Now they also want 14 character and monthly changes... Do you know how people remember those? That's right, written on a post it note on their desk, because that's too stupidly hard.

CTO finally wised up and we're going to dual factor now with a phone or token.
Old 03-05-2019, 07:42 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #17 (permalink)
Registered
 
Deschodt's Avatar
 
Join Date: Oct 2004
Location: CA
Posts: 5,888
PS: I work a lot with security - well technically security gives me a lot of work, because they are the seagulls of IT : they come, crap all over you, and fly away leaving you with the work ;-)

Bottom line is every major organization has been breached, your data, research, ID are already in the wrong hands, most of what's being done now (network access control, intrusion detection, Antivirus, firewall, etc..) is to satisfy the legalities and not get sued... And yet we keep buying smart devices all around our homes and doing everything online, and I bet our nuclear power plants computers have web access too...

I'll repost this, and replace voting software with ANY software... even that of your smart fridge.

Old 03-05-2019, 07:47 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #18 (permalink)
Get off my lawn!
 
GH85Carrera's Avatar
 
Join Date: Nov 2007
Location: Oklahoma
Posts: 85,428
Garage
I see so many software packages wanting to go back to running everything from "the cloud" and I resist. I have a good internet provider, but I have gone a day with no internet. I can't imagine no way to get to my data or programs.

I store all my data, all of it, locally. I don't trust any on line "cloud" at all. Apple has been hacked, Microsoft, the FBI and CIA have been hacked, banks are hacked. I have to use a bank to keep the IRS happy, and it is FDIC insured, and we have paper records so my money is safe. (I hope)

Our company is a microscopic tiny part of the world. We don't think of ourselves as hacker proof, but we are smart enough to not fall for BS phishing or email scams.

I have been using computers since the days before viruses. I remember discussing viruses with a doctor friend and how they were going to be a fact of life in the near future. The terms anti-virus was a novel thing back then. Then the internet became a major part of every business. It has totally changed so many things. I have never had a virus, or trojan, and I plan to keep it that way.
__________________
Glen
49 Year member of the Porsche Club of America
1985 911 Carrera; 2017 Macan
1986 El Camino with Fuel Injected 350 Crate Engine
My Motto: I will never be too old to have a happy childhood!
Old 03-05-2019, 08:08 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #19 (permalink)
Registered
 
VincentVega's Avatar
 
Join Date: Aug 2002
Location: MD
Posts: 5,733
Right, air gap it and no issues. Then you need functionality.

Every org should have a stated security policy. But, just use a phrase. IlovebuyingpartsFromPelican!

Old 03-05-2019, 09:21 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #20 (permalink)
Reply

Thread Tools
Rate This Thread
Rate This Thread:

 


All times are GMT -8. The time now is 12:00 PM.


 
Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2025, vBulletin Solutions, Inc.
Search Engine Optimization by vBSEO 3.6.0
Copyright 2025 Pelican Parts, LLC - Posts may be archived for display on the Pelican Parts Website -    DMCA Registered Agent Contact Page
 

DTO Garage Plus vBulletin Plugins by Drive Thru Online, Inc.