tag:blogger.com,1999:blog-8311151968716514867.post3364467343395613772..comments2023-09-06T08:23:46.896-07:00Comments on oreneta aground (but missinaibi's afloat!): passwordsorenetahttp://www.blogger.com/profile/10616103982088424715noreply@blogger.comBlogger10125tag:blogger.com,1999:blog-8311151968716514867.post-3098191050187198922010-03-09T09:24:20.072-08:002010-03-09T09:24:20.072-08:00hmmmm, that might just work!!!hmmmm, that might just work!!!orenetahttps://www.blogger.com/profile/10616103982088424715noreply@blogger.comtag:blogger.com,1999:blog-8311151968716514867.post-15464954181156107312010-03-09T08:16:36.795-08:002010-03-09T08:16:36.795-08:00Then just limit the remembering to what you access...Then just limit the remembering to what you access from those "public" computer, and leave the rest to the "firefox at home" ;). This will serve the double purpose of disciplining yourself in the meantime, keeping you from logging onto "distraction" websites while at work. ;)Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-8311151968716514867.post-73915421758320841582010-03-09T05:18:20.478-08:002010-03-09T05:18:20.478-08:00ElP....I followed that, and I am impressed with my...ElP....I followed that, and I am impressed with myself that I did! My biggest problem is that I have to use so many different computers in so many different places, indeed on different continents....and the IT guys at my work here are, forgive me, but they are ABSOLUTE CLOWNS. Honest to god I could almost do better myself. First of all I would get rid of the hard drive from the 80's that they are scamming my boss with....yadda yadda yadda......<br /><br />ANYWAY, because of my peripatetic nature I am stuck working with the grey matter for saving passwords, and so I do try to enter some logic into it, alongside a great mass of capitals and numbers and signs....<br /><br />sigh.orenetahttps://www.blogger.com/profile/10616103982088424715noreply@blogger.comtag:blogger.com,1999:blog-8311151968716514867.post-47860253208082871182010-03-09T02:28:16.653-08:002010-03-09T02:28:16.653-08:00The thing with mixing case and replacing letters b...The thing with mixing case and replacing letters by numbers is that it makes it much more difficult for hackers to use "dictionaries". You can document yourself about "rainbow tables" if you wish, but so far, it's generally accepted as unsafe to use a password that uses only letters and less than 8 characters, because even from the "crypted" version of your password, it's almost easy as pie to find it out. When you mix the case and replace letters with numbers, it makes brute force attacks much more difficult (your common hacker will not try to guess your password based on you especially, because he doesn't know you in particular. he/she will use dictionary based attacks, or brute force attacks, using all possible passwords to try to find out what's good.)<br /><br /><br />For the firefox password manager feature, it uses two-way encryption algorithms to save your usernames and passwords on the computer, the "key" for encrypting/decrypting being your master password. The algorithm in use is deemed secure until 2030 by the US government. Provided you use a complex enough "master password", you're pretty safe. Of course, this is assuming you're on your home computer, not on some "shared by thousands" computer. Firefox being Free Open Source Software, one would assume that if they provide any "password saving" feature, and the source code for the implementation of the feature is publicly available, they would use secure algorithms for encrypting the data, wouldn't they? Otherwise it would be to easy to break the encryption and get your hands on the passwords list.Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-8311151968716514867.post-54726699637540494712010-03-06T13:32:18.233-08:002010-03-06T13:32:18.233-08:00Mmichele...oh oh oh oh oh, you said it honey.
Lyn...Mmichele...oh oh oh oh oh, you said it honey.<br /><br />Lynda, they are evil aren't they. If there were some international code for weird demands, but no!<br /><br />Beth, my boss came into work today, and she can't find her little book, hasn't been able to for days.......I would have changed all the passwords right then and there and started all over again. She didn't. NOT MY PROBLEM. Well, not yet.<br /><br />Bodhi, doesn't rank as something I really want to spend my day doing.<br /><br />ElP, you are, as always, a breath of wisdom and reason. It is true that many folks use the same passwords for many things, I was talking to a woman the other day and she and her husband BOTH have only one password for absolutely everything!!!!<br /><br />Taking it too far. I like your idea of the SMS lingo, but most hackers are probably young and might think of that no? Protection from the geriatric? You let firefox remember your passwords???????? REALLY???????<br /><br />That always seemed to me to be the height of folly!!!<br /><br />Please, explain further!orenetahttps://www.blogger.com/profile/10616103982088424715noreply@blogger.comtag:blogger.com,1999:blog-8311151968716514867.post-21056548869494036752010-03-05T13:45:25.060-08:002010-03-05T13:45:25.060-08:00If you have a look there: https://www.opends.org/w...If you have a look there: https://www.opends.org/wiki/page/PasswordPolicyFeatures you'll see that there is a standard and unhealthy amount of parameters that are commonly accepted for constraints on a password. One crazy example would be "must be between 10 and 20 characters, mixed of at least 3 letters and 3 non-letters, different from the last 10 passwords that you had in the last year, must differ from the previous password from at least 5 characters, has to be changed after one week, cannot be changed twice in a day, and your account will be locked for 30 minutes if you put the wrong password thrice in the same minute, and locked for good if you put the wrong password five times in a row".<br /><br />Good luck with that. I think the whole crazyness, even for "not so important websites" comes from the fact that people usually try to keep the same password everywhere, so if you hack, say a twitter account, then there are good chances that you also discovered the password for that person's email account, opening the door for even more passwords.<br /><br />Personnally, I use words that I can remember, uppercase some letters, and replace random others with numbers. for example: orenetaaground would become oR3net4Agr0unD. Voilà. You're secured. And also, I use firefox to remember my passwords, the list of passwords itself being encrypted with a "master password", that I keep as secure as possible. But hey. This way, only one master password to remember for all my websites.Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-8311151968716514867.post-29306190660900266412010-03-05T13:35:51.868-08:002010-03-05T13:35:51.868-08:00I'm with you, I'm forever hitting "I ...I'm with you, I'm forever hitting "I forgot my password" for different sites. How on gawd's green earth are we supposed to remember all our passwords and pin numbers? AND change them regularly. Stretched to the impossible.The Bodhi Chicklethttps://www.blogger.com/profile/16516287894431519640noreply@blogger.comtag:blogger.com,1999:blog-8311151968716514867.post-36495523983756878362010-03-05T12:58:31.145-08:002010-03-05T12:58:31.145-08:00Shhh...don’t tell anyone but I have to write down ...Shhh...don’t tell anyone but I have to write down all my passwords in a little book. Which, of course, is very well hidden. ;)<br /><br />What the heck are we all going to do as we get older and our memories get poorer? I won’t even remember where I hid the book.Bethhttps://www.blogger.com/profile/14110235078325434919noreply@blogger.comtag:blogger.com,1999:blog-8311151968716514867.post-11620937450267925232010-03-05T08:29:08.936-08:002010-03-05T08:29:08.936-08:00Drive me insane.. especially the ones where they f...Drive me insane.. especially the ones where they force you to use all manner of weird and wonderful. I recently had the same problem as you when I was using a german keyboard.. I couldn't put in my password.. because I couldn't find the key!Lyndahttps://www.blogger.com/profile/03037350189933791568noreply@blogger.comtag:blogger.com,1999:blog-8311151968716514867.post-67455905357984599492010-03-05T06:48:55.677-08:002010-03-05T06:48:55.677-08:00Passwords are the bane of my on line existence.Passwords are the bane of my on line existence.mmichelehttps://www.blogger.com/profile/06400779291547414615noreply@blogger.com