Page 1 of 4 123 ... LastLast
Results 1 to 10 of 34

Thread: Password Stupidity

  1. #1
    VladTepes's Avatar
    VladTepes is offline Major Part of the Heart and Soul of AULRO Subscriber
    Join Date
    Feb 2004
    Location
    Bracken Ridge, Qld
    Posts
    16,055
    Total Downloaded
    0

    Password Stupidity

    Password Stupidity

    Our IT mob keep upping the security requirements for passwords (well, it’s easier than fixing all the bloody IT issues)

    Now has to:

    - Be at least 11 characters
    - Contain at least one upper case letter
    - Contain at least one lower case letter
    - Contain at least one number
    - Contain at least one symbol character
    - NOT be any variation of a previous password.
    - NOT contain any element of your d.o.b, telephone nnumber or address.

    The above are all apparently cross-referenced with HR system data and so on.

    We are also advised that (and this may be mandated future) that the password should not include any dictionary word in any language.

    Sigh.


    As if that’s not enough they provide some examples (with the warning not to use any of the examples as your password, of course)

    Helpfully, they say that constructing passwords in the following manner makes them strong but at the same time easy to remember.

    I call bull**** on the latter.

    June School Holidays can be modified to: 7un3Schoo1Ho!id@ys;
    Somewhere over the rainbow, blue birds fly can be modified to 5w0tR,Bbf};
    I like Australian red wine can be modified to: IL077ieR3dw!ne*;
    Be good, be wise can be modified to: B3g00db3wi5e$.

    Hmmm. I'd remember each of those for about 3 seconds.....

    All this would accomplish is promoting the security sin of writing down the password so as not to forget it ! Dickheads.
    It's not broken. It's "Carbon Neutral".


    gone


    1993 Defender 110 ute "Doris"
    1994 Range Rover Vogue LSE "The Luxo-Barge"
    1994 Defender 130 HCPU "Rolly"
    1996 Discovery 1

    current

    1995 Defender 130 HCPU and Suzuki GSX1400


  2. #2
    Join Date
    Mar 2011
    Location
    Burpengary, QLD
    Posts
    654
    Total Downloaded
    0
    Yeah, those restrictions are a bit over-the-top...

  3. #3
    Tombie Guest
    IT... The Idiot Team

  4. #4
    Join Date
    Dec 2006
    Location
    Kippa Ring
    Posts
    1,665
    Total Downloaded
    0
    You just need to get your co workers together and have everyone ring the IT help desk every day, because you have forgotten your password.

    They will get the message eventually.
    John

    Series 2 LWB - Gone
    Series 3 LWB - Gone
    Series 1 LWB - Gone
    81 RR 2 door - Gone
    95 Disco v8 - The Next Victim

  5. #5
    Join Date
    Mar 2014
    Location
    Hunter Valley, NSW
    Posts
    232
    Total Downloaded
    0
    Send them this:


    xkcd: Password Strength


  6. #6
    Join Date
    Apr 2013
    Location
    NSW, Sydney
    Posts
    926
    Total Downloaded
    0
    Try KeePass - it is a password vault, so you only need to remember the password to get in to your computer and the password to get in to the vault - and then copy + paste to freedom.

  7. #7
    Join Date
    Jan 1970
    Location
    NSW SW Slopes
    Posts
    12,052
    Total Downloaded
    0
    Quote Originally Posted by VladTepes View Post
    Hmmm. I'd remember each of those for about 3 seconds.....
    Your memory must be heaps better than mine!
    MY21.5 L405 D350 Vogue SE with 19s. Produce LLAMS for LR/RR, Jeep GC/Dodge Ram
    VK2HFG and APRS W1 digi, RTK base station using LoRa

  8. #8
    Join Date
    Dec 2007
    Location
    Cambewarra, NSW
    Posts
    517
    Total Downloaded
    0
    Earlier this year I was using a Government system that required sixteen characters, upper/lower case and symbols etc. A pattern of key presses and using the shift key was my friend.

  9. #9
    Join Date
    Jan 1970
    Location
    Avoca Beach
    Posts
    14,154
    Total Downloaded
    0
    The mygov site requires you to have a password and then asks a predetermined secret question,Eg who was your first employer.

    Regards Philip A

  10. #10
    Homestar's Avatar
    Homestar is offline Super Moderator & CA manager Subscriber
    Join Date
    Aug 2010
    Location
    Sunbury, VIC
    Posts
    20,105
    Total Downloaded
    0
    Do you work for an American company by any chance Vlad? Any company over a certain size that is based in the States has to comply with the Sarbanes-Oxley Act (SOX) - Sarbanes–Oxley_Act of which one part is password security that requires that level of complexity. Either that, or your IT team have been reading up on it and thought it was a good idea...

    Been through SOX compliance with a previous company. Stupid thing was that it had the opposite effect in reality as everyone just wrote their passwords down as they could never remember them...
    If you need to contact me please email homestarrunnerau@gmail.com - thanks - Gav.

Page 1 of 4 123 ... LastLast

Bookmarks

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
Search AULRO.com ONLY!
Search All the Web!