IT/Computer saaaaaavy people... - Page 3 - Pirate4x4.Com : 4x4 and Off-Road Forum
 
Pirate4x4.Com : 4x4 and Off-Road Forum  

Go Back   Pirate4x4.Com : 4x4 and Off-Road Forum > Miscellaneous > General Chit-Chat
Notices

Reply
 
Share Thread Tools Display Modes
Old 08-05-2011, 12:22 PM   #51 (permalink)
Sue
Granite Guru
 
Sue's Avatar
 
Join Date: Sep 2002
Member # 13743
Location: Houston
Posts: 664
aaaaaaaand.....


My office software updated and now I have to change the password what appears to be every 30ish days. (maybe it's been longer, can't be more than two months)

Now when I log in a pop up appears and says "your password will expire in 15 days..." and each day thereafter there is a count down. Every time I log out/log in, every day So basically I have to change it all the time.


/end of stupid useless rant.
__________________
AKA NI733HM Chickie
rockota = You're right, Sue... 100% correct.
Sue is offline   Reply With Quote
Old 08-05-2011, 12:25 PM   #52 (permalink)
Moderator
 
apeters89's Avatar
 
Join Date: Oct 2001
Member # 7647
Location: Oklahoma City
Posts: 7,545
Blog Entries: 2
I've argued many times that overzealous password policies are the #1 security risk within large companies.
__________________
Check out our new Team Ape Eater Racing Like us on FaceBook
KF5EQF

Sniper Fab
4x4Oil SBwinVPS Custom Splice C2GFab
apeters89 is offline   Reply With Quote
Old 08-05-2011, 12:34 PM   #53 (permalink)
fatdan460lovespenis
 
Dieselmh's Avatar
 
Join Date: Aug 2001
Member # 6417
Posts: 3,921
Send a message via Yahoo to Dieselmh
Quote:
Originally Posted by apeters89 View Post
I've argued many times that overzealous password policies are the #1 security risk within large companies.
It's a double edged sword. Don't make the users change them and pretty soon everyone knows everyone's password because they had to log in to help them out or something like that. Make them change them too often and they write them down, usually in plain sight or very poorly hidden.
Dieselmh is offline   Reply With Quote
Old 08-05-2011, 01:29 PM   #54 (permalink)
Newbie
 
Bluetick's Avatar
 
Join Date: May 2005
Member # 48146
Posts: 13
I've got people working here, if it's more than a 5 letter word they can't remember it. Throw in anything else and their out for the count.

The old line of use a song or phrase and use the first letters of the words and toss in numbers and symbols.

mgtlls* my god they look like stars

Phone call I once had went something like this.

What's my password to blank blank site?

I don't know but I know they send the new password in an email when you set a new one. Just look in your email.

OK what's the password to my email account? I forgot it too.
__________________
I have the knowledge and ability to do the job. What I lack is the tolerance to deal with people who want me to do the job for less money and in half the time that it takes to do the job right.
Bluetick is offline   Reply With Quote
Old 08-05-2011, 01:33 PM   #55 (permalink)
Team 261 - VP
 
atvobsession's Avatar
 
Join Date: Jun 2004
Member # 31923
Posts: 1,739
I'm a security specialist for PeopleSoft....you have to balance password change forces and none at all. None at all is NOT a good security strategy, changing every 30 days is too aggressive.

I have my top secret clearance and have worked at DoD and DoS....passwords there are 13 characters, must have mixed case, 2 numbers and 2 special characters, and NO WORDS IN THE DICTIONARY are allowed. Passwords there last a reasonable, 90 days.

Yes..it's a pain...but you just manage it.


And yes...HIPPA compliance in the 90's caused your forced password changes and SSN removal.


RULE #1 in the password change business for end users...NEVER....change your password on a Friday! Wait till Monday, so you have all week to use it before you kill more braincells over the weekend.
__________________
Regards,
Ken Hower - KOH #1962 Close Enough Racing
Rubicon Trail Foundation - Director 2011-Present
Click Here for a calendar of Rubicon Events
Raceline Wheels and Falken Tires!! Thanks guys for sponsoring the Tacos at this Years Event!!
atvobsession is offline   Reply With Quote
Old 01-06-2012, 02:04 PM   #56 (permalink)
Sue
Granite Guru
 
Sue's Avatar
 
Join Date: Sep 2002
Member # 13743
Location: Houston
Posts: 664
GAH!

I have had to change a few since I last posted in this, but this time I got "that's too close to your old password" or some crap and had to think of something completely new. There's got to be a better way.
__________________
AKA NI733HM Chickie
rockota = You're right, Sue... 100% correct.
Sue is offline   Reply With Quote
Old 01-06-2012, 02:07 PM   #57 (permalink)
fatdan460lovespenis
 
Dieselmh's Avatar
 
Join Date: Aug 2001
Member # 6417
Posts: 3,921
Send a message via Yahoo to Dieselmh
Think of a song you like. Now take a line out of that song, something like

The itsy bitsy spider went up the water spout.

Now just use the first letters of the words and change the "I"s to "1"s and you get:

t1bswutws

easy enough to remember and meets the requirements of most places.
Dieselmh is offline   Reply With Quote
Old 01-06-2012, 02:10 PM   #58 (permalink)
Sue
Granite Guru
 
Sue's Avatar
 
Join Date: Sep 2002
Member # 13743
Location: Houston
Posts: 664
Quote:
Originally Posted by Dieselmh View Post
Think of a song you like. Now take a line out of that song, something like

The itsy bitsy spider went up the water spout.

Now just use the first letters of the words and change the "I"s to "1"s and you get:

t1bswutws

easy enough to remember and meets the requirements of most places.
That's a good idea. I wished they all changed at the same time so I could have them be the same passwords. I was just adding on one different symbol on the end each time, but now it's saying it's too close to the old ones


EDIT: and you're such a dad itsy bitsy spider. LOLz
__________________
AKA NI733HM Chickie
rockota = You're right, Sue... 100% correct.

Last edited by Sue; 01-06-2012 at 02:11 PM.
Sue is offline   Reply With Quote
Old 01-06-2012, 02:20 PM   #59 (permalink)
Registered User
 
Join Date: Feb 2007
Member # 86724
Posts: 4,647
Quote:
Originally Posted by Sue View Post
That's a good idea. I wished they all changed at the same time so I could have them be the same passwords. I was just adding on one different symbol on the end each time, but now it's saying it's too close to the old ones


EDIT: and you're such a dad itsy bitsy spider. LOLz
please don't use the same password for everything.

because once one account is compromised they all would be.
__________________
ko derf
87manche is online now   Reply With Quote
Old 01-06-2012, 02:21 PM   #60 (permalink)
Sue
Granite Guru
 
Sue's Avatar
 
Join Date: Sep 2002
Member # 13743
Location: Houston
Posts: 664
Quote:
Originally Posted by 87manche View Post
please don't use the same password for everything.

because once one account is compromised they all would be.
I don't, but they are all kind of variations of each other. I suppose that's bad too? They're completely random, nothing simple or guessable
__________________
AKA NI733HM Chickie
rockota = You're right, Sue... 100% correct.
Sue is offline   Reply With Quote
Old 01-06-2012, 02:25 PM   #61 (permalink)
Registered User
 
Join Date: Feb 2007
Member # 86724
Posts: 4,647
Quote:
Originally Posted by Sue View Post
I don't, but they are all kind of variations of each other. I suppose that's bad too? They're completely random, nothing simple or guessable
variations are OK, as long as it's not all the same dictionary word with a different letter capitalized though.

I know people tha tuse the same password for facebook as they do online banking

and then they wonder how their checking account got raided and money gone.

That's not to say that I'm not guilty of that. I use the same password for not critical stuff like forum logins., but email, banking and anything that can be used to do real damage to your life or business should all have unique passwords.
__________________
ko derf
87manche is online now   Reply With Quote
Old 01-06-2012, 02:39 PM   #62 (permalink)
Sue
Granite Guru
 
Sue's Avatar
 
Join Date: Sep 2002
Member # 13743
Location: Houston
Posts: 664
Quote:
Originally Posted by 87manche View Post
variations are OK, as long as it's not all the same dictionary word with a different letter capitalized though.

I know people tha tuse the same password for facebook as they do online banking

and then they wonder how their checking account got raided and money gone.

That's not to say that I'm not guilty of that. I use the same password for not critical stuff like forum logins., but email, banking and anything that can be used to do real damage to your life or business should all have unique passwords.

Ooof. Yeah, important stuff is way different than social site.
__________________
AKA NI733HM Chickie
rockota = You're right, Sue... 100% correct.
Sue is offline   Reply With Quote
Old 05-30-2012, 02:53 PM   #63 (permalink)
fatdan460lovespenis
 
Dieselmh's Avatar
 
Join Date: Aug 2001
Member # 6417
Posts: 3,921
Send a message via Yahoo to Dieselmh
Thread bump! I stumbled upon this site today, and thought it might be a pretty good solution for people who have to change their passwords regularly and want a "secure" way to keep them written down. If you can remember a symbol and a color, you can remember your password.

http://www.passwordcard.org/en
Dieselmh is offline   Reply With Quote
Old 05-30-2012, 03:15 PM   #64 (permalink)
Registered User
 
COXJ94's Avatar
 
Join Date: Oct 2005
Member # 56547
Location: Colorado
Posts: 125
if you dodge a wrench, you can dodge a ball
COXJ94 is offline   Reply With Quote
Old 05-30-2012, 03:19 PM   #65 (permalink)
Sue
Granite Guru
 
Sue's Avatar
 
Join Date: Sep 2002
Member # 13743
Location: Houston
Posts: 664
Quote:
Originally Posted by Dieselmh View Post
Thread bump! I stumbled upon this site today, and thought it might be a pretty good solution for people who have to change their passwords regularly and want a "secure" way to keep them written down. If you can remember a symbol and a color, you can remember your password.

http://www.passwordcard.org/en
Interesting, thanks. I might actually use that.



I almost bumped this the other day when two websites needed updated password had two different requirements (one couldn't use symbols, the other required a number and symbol, etc...)
__________________
AKA NI733HM Chickie
rockota = You're right, Sue... 100% correct.

Last edited by Sue; 05-30-2012 at 03:21 PM.
Sue is offline   Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 09:49 PM.


Powered by vBulletin® Version 3.8.6
Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.6.0 ©2011, Crawlability, Inc.