To LUGNET HomepageTo LUGNET News HomepageTo LUGNET Guide Homepage
 Help on Searching
 
Post new message to lugnet.admin.generalOpen lugnet.admin.general in your NNTP NewsreaderTo LUGNET News Traffic PageSign In (Members)
 Administrative / General / 5615
5614  |  5616
Subject: 
Re: New feature: Article rating
Newsgroups: 
lugnet.admin.general
Date: 
Mon, 27 Mar 2000 17:04:39 GMT
Viewed: 
1898 times
  
In lugnet.admin.general, Mike Stanley writes:
In lugnet.admin.general, Todd Lehman writes:

How about minimum of 8 characters with at least 2 numbers or other special
characters?   6 and 1 is fairly common.

The argument here is that if you get too restrictive (requiring one non
alphanumeric, for example) you cut the set of passwords down far enough that
you make brute force attack easier!

I tend to favor trying a few quick checks on the pw to see if it's easily
guessable and if it is, telling the user that it's not the greatest choice, but
not actually preventing its use.

But then I haven't yet seen where Lugnet needs the level of security that, for
example, Derek S needs when he goes to work (in a missile silo).

X.com doesn't require anything special about PWs... when you use X you have
more at risk than at Lugnet (well, your honor and reputation are more at risk
here if someone starts posting in your name). Doesn't make their lax security
"right" but there is an appropriate level of effort to put into this, not sure
what it is yet.

++Lar



Message has 2 Replies:
  Re: New feature: Article rating
 
(...) can't someone already post in your name without knowing your password? I believe all you need to be able to post is your name and email address... heh, going to test that in a sec. btw, as far as password choosing and forcing - well, I believe (...) (25 years ago, 27-Mar-00, to lugnet.admin.general)  
  Re: New feature: Article rating
 
(...) I hope you'll forgive me if I'm skeptical of that statement. I haven't studied human factors of cryptography in depth but my BS was in mathematics. I know what you're saying, and why it might be true given a certain set of assumptions, but how (...) (25 years ago, 28-Mar-00, to lugnet.admin.general)  

Message is in Reply To:
  Re: New feature: Article rating
 
(...) Hrmmm .... or maybe article scoring could be turned off for the market groups where listings are posted? Probably not, though, since those groups often contain discussion in addition to listings. (...) Dunno about Ed, but I read LUGNET from (...) (25 years ago, 26-Mar-00, to lugnet.admin.general)

309 Messages in This Thread:
(Inline display suppressed due to large size. Click Dots below to view.)
Entire Thread on One Page:
Nested:  All | Brief | Compact | Dots
Linear:  All | Brief | Compact

This Message and its Replies on One Page:
Nested:  All | Brief | Compact | Dots
Linear:  All | Brief | Compact
    

Custom Search

©2005 LUGNET. All rights reserved. - hosted by steinbruch.info GbR