![]() |
|
|
|
Registered
|
Passwords
When general e-mail was introduced where I work, the password could be anything, literally anything (except "password") People tended to choose things easily remembered, mother's maiden names, street they grew up on, that sort of thing.
Not a huge challenge for the NSA, but a simple system that worked. Then,,,, we had an IT review. "Not secure enough" "We must improve the passwords"..... So now the passwords have to be between 6 and 10 letters, at least 1 number, a mixture of capitals and lower case and automatically expire every 6 weeks. The system remembers your last 6 passwords so you can not re-use them. Result? The notice board in the night office has a list where everyone writes their current e-mail password. Yep, much more secure.
__________________
(As for) Michael Moore:Calling that lying liberal POS propaganda a documentary is like calling PARF the library of congress. I knew it would happen, just not so soon........... |
||
![]() |
|
Make Bruins Great Again
|
Over compensation. The result of anything ruled by panic instead of common sense. It reminds me of when we had the gas "crisis" in 1979-80. I was selling Lincoln/Mercury and people were trading in their Town Car or Grand Marquis for an Escort, Civic, or other econo-boxes. One year later they were begging for a way to get out of the Escort. It was too small and uncomfortable but they were now upside down.
Same thing happens in politics, the environment, even relationships.
__________________
-------------------------------------- Joe See Porsche run. Run, Porsche, Run: `87 911 Carrera |
||
![]() |
|
Registered
Join Date: Mar 2008
Location: Chicagoland
Posts: 2,695
|
there was a study done last year that basically said that changing passwords regularly doesn't do anything to improve security. when a password is compromised, the hacker isn't going to wait 2 weeks before using the password. it's going to be used within hours of the hack.
while it may be a good idea not to use anything that's on HR record, i don't think it makes two bits of difference to an outside hacker. they're not going to be checking out a employee's personal history to find passwords. they're going for system security exploits. |
||
![]() |
|
Get off my lawn!
|
Yep, I hate managing all the passwords I use. I hope a inexpensive bio-metric system will hit the market soon.
I want my computer to KNOW it is me, and just log onto every system I use without bothering me about a password. And I want that totally secure, and so cheap it is just part of the system.
__________________
Glen 49 Year member of the Porsche Club of America 1985 911 Carrera; 2017 Macan 1986 El Camino with Fuel Injected 350 Crate Engine My Motto: I will never be too old to have a happy childhood! |
||
![]() |
|
1980 911 SC
|
Quote:
__________________
Life's a Beach |
||
![]() |
|
Make Bruins Great Again
|
"I want my computer to KNOW it is me"
__________________
-------------------------------------- Joe See Porsche run. Run, Porsche, Run: `87 911 Carrera |
||
![]() |
|
![]() |
Make Bruins Great Again
|
Just use the same password for everything. Oh, wait, did I just say that in a public forum?
__________________
-------------------------------------- Joe See Porsche run. Run, Porsche, Run: `87 911 Carrera |
||
![]() |
|
Registered
Join Date: May 2008
Location: Harford Co, MD
Posts: 1,623
|
Try 15 charachters: 2 capital letters, 2 numerals, 2 special charachters.
Oh, and it will expire in three months.
__________________
-Brad 2002 Carrera2 1986 944 Turbo |
||
![]() |
|
The Unsettler
|
Bunch of years back my CEO, President and Co Chairman were resisting the need to have a PW policy.
So one morning I decided to play hacker for the day, let's see how many mailboxes I could get into. I gave myself 3 simple criteria to try, default password, initials, b-day and a 4th which was if I knew something personal about them like the name of their sailboat, the tail number of their plane, pets name. I got into more than 50% of the accounts that I tried, we are talking well over 100 accounts accessed. I did not get into the Presidents but it really did not matter since I got in to 80% of the Sr Management/Executive accounts. We sent most of our mail to each other so almost all of his was exposed anyway. Email security is a PIA but it's necessary. It'll never be 100% secure but you need to do whatever you can to try.
__________________
"I want my two dollars" "Goodbye and thanks for the fish" "Proud Member and Supporter of the YWL" "Brandon Won" |
||
![]() |
|
Unregistered
Join Date: Aug 2000
Location: a wretched hive of scum and villainy
Posts: 55,652
|
Quote:
Who'da thunk .............. |
||
![]() |
|
Burn the fire.
|
I think this comic describes the security aspect...
![]()
__________________
[x] Working | [_] Broken: 2017 Victory Octane [x] Working | [_] Broken: 2005 Ram 1500 SLT w/5.7L Hemi "Drive it like you stole it." |
||
![]() |
|
Registered
|
Quote:
__________________
Aaron '81 911SC RoW Targa |
||
![]() |
|
![]() |
Registered
Join Date: Mar 2003
Posts: 10,336
|
I'm much happier with a private rsa key and a passphrase. Unfortunately, ITS here likes to do the crazy thing, so for a while my passwords were variations on "f*ck its", in the hope that somewhere they were stored plain text ...
__________________
“IN MY EXPERIENCE, SUSAN, WITHIN THEIR HEADS TOO MANY HUMANS SPEND A LOT OF TIME IN THE MIDDLE OF WARS THAT HAPPENED CENTURIES AGO.” |
||
![]() |
|
canna change law physics
|
About 10 years ago, GE started expiring passwords every 6 months. I came up with a system with a common word I used for a password many years before. I inserted a number in the middle which was incremented each time the password was changed. Over time, the requirement was mix of upper and lower and a special character. So those were added into the formula.
When I went to my next job, it was monthly changes... Basically, I have the same password I used on a mainframe back 30+ years ago. And it is not likely to be guessed.
__________________
James The pessimist complains about the wind; the optimist expects it to change; the engineer adjusts the sails.- William Arthur Ward (1921-1994) Red-beard for President, 2020 |
||
![]() |
|
Registered
Join Date: Nov 2003
Location: Seattle
Posts: 1,785
|
The comic above was exactly what I was about to post until I scrolled down that far.
![]() Most of my wireless passwords are long nonsensical phrases like that. People look at me funny when I pass them along, but they are long and unlikely to be guessed.
__________________
Rob 1980 SC - 2011 Tiguan - 2018 Tesla M3P |
||
![]() |
|
Parrothead member
Join Date: Jul 2003
Location: Monmouth county, NJ USA
Posts: 13,842
|
Quote:
__________________
Vinny Red '86 944, 05 Ford Super Duty Dually '02 Ram 3500 Diesel 4x4 Dually, '07Jeep Wrangler '62 Mercury Meteor '90 Harley 1200 XL "Live your Life in such a way that the Westboro Baptist Church will want to picket your funeral." |
||
![]() |
|
Registered
|
We started using common access cards with a chip in them when I was active duty Navy. You still had to have a password that would expire in a couple of months. I used the same method as red-beard.
__________________
A nose heavy airplane flies poorly, a tail heavy plane flies once. |
||
![]() |
|
Registered
|
I have a MS Word file three pages long for all my passwords. My company won't even allow the same PW or PW format for the 20 or so internal sites I can still only access once on the VPN. It's a joke. FWIW, I've never even thought of using anything related to my name, b-day, address, SSN, etc. Why do people do that?
__________________
2022 BMW 530i 2021 MB GLA250 2020 BMW R1250GS |
||
![]() |
|
Registered
Join Date: Aug 2008
Posts: 1,011
|
How about this....a study done to see how secure people are recorded that 60% of people who found a USB thumb drive on the ground put it in their PC. In thinking about it, I probably would too but talk about a good way to steal some info with self extracting program off of the thumb drive.
__________________
You can't redistribute ambition... |
||
![]() |
|
Registered
|
I have a word file for each of my passwords and user names. I've got upwards of 100 now and it's a pain because I never seem to sync the file in all my computers and can't remember which one is the latest.
I've been told that it is more secure to have a different password and user name for each account because if you have one universal password and it gets out, all your accounts are in jeopardy. True? Is that cartoon accurate? It would be great to use common words I can remember.
__________________
. |
||
![]() |
|