▲ 1179 ▼ Passwords (lemmy.world) submitted 3 years ago by 8tpercent@lemmy.world to c/technology@lemmy.world 240 comments fedilink hide all child comments We've all been there.
[–] graphite@lemmy.world 18 points 3 years ago (2 children) Password can't exceed 32 characters Garbage permalink fedilink source hideshow 4 child comments replies: [–] Smokeless7048@lemmy.world 6 points 3 years ago (2 children) i wouldn't even mind if it was 32. 32 is a damn strong password. I've seen as low as 10 digits in the past permalink fedilink source parent hideshow 4 child comments replies: [–] iopq@lemmy.world 8 points 3 years ago (1 child) My Wells Fargo password used to be max 8 characters, and when you use the phone you you can basically use the keypad to log in. So it's basically 8 DIGITS permalink fedilink source parent hideshow 2 child comments replies: [–] Smokeless7048@lemmy.world 1 point 3 years ago Wow, super secure! permalink fedilink source parent [–] graphite@lemmy.world 1 point 3 years ago* (last edited 3 years ago) (1 child) 32 is a damn strong password Not necessarily: only if it's generated properly, and only for the moment - that will change in the next few years. You do realize that length and symbol type are only 2 out of many other factors that go into a strong password? permalink fedilink source parent hideshow 2 child comments replies: [–] Smokeless7048@lemmy.world 2 points 3 years ago (1 child) Ok, fair, not all 32 digit passwords will be secure. 11111111111111111111111111111111 is not secure, but I was trying to imply, in a properly generated password, 32 digits long is very secure. permalink fedilink source parent hideshow 2 child comments replies: [–] graphite@lemmy.world 1 point 3 years ago* but I was trying to imply, in a properly generated password, 32 digits long is very secure. I understand, and I think you make a valid point as far as the discussion is concerned. It's unfortunately still a little more complicated than that, though. Like I said, there's more to a password than length and symbol type. Even something like cF*+@aXbIdFHje2vZiU-1 is less secure than if it were generated by a good PRNG. D0@ndro!dsDr@3@m0f3l3ctr!cSh33p? is also insecure, though it might have been considered secure 4-5 years ago. You see what I'm saying? Then of course there's hash algorithms and how those are used to authenticate the passwords themselves, etc. permalink fedilink source parent [–] Revan343@lemmy.ca 3 points 3 years ago You think that's bad, a decade ago I had to use a government-run website that required passwords be exactly 8 characters permalink fedilink source parent
[–] Smokeless7048@lemmy.world 6 points 3 years ago (2 children) i wouldn't even mind if it was 32. 32 is a damn strong password. I've seen as low as 10 digits in the past permalink fedilink source parent hideshow 4 child comments replies: [–] iopq@lemmy.world 8 points 3 years ago (1 child) My Wells Fargo password used to be max 8 characters, and when you use the phone you you can basically use the keypad to log in. So it's basically 8 DIGITS permalink fedilink source parent hideshow 2 child comments replies: [–] Smokeless7048@lemmy.world 1 point 3 years ago Wow, super secure! permalink fedilink source parent [–] graphite@lemmy.world 1 point 3 years ago* (last edited 3 years ago) (1 child) 32 is a damn strong password Not necessarily: only if it's generated properly, and only for the moment - that will change in the next few years. You do realize that length and symbol type are only 2 out of many other factors that go into a strong password? permalink fedilink source parent hideshow 2 child comments replies: [–] Smokeless7048@lemmy.world 2 points 3 years ago (1 child) Ok, fair, not all 32 digit passwords will be secure. 11111111111111111111111111111111 is not secure, but I was trying to imply, in a properly generated password, 32 digits long is very secure. permalink fedilink source parent hideshow 2 child comments replies: [–] graphite@lemmy.world 1 point 3 years ago* but I was trying to imply, in a properly generated password, 32 digits long is very secure. I understand, and I think you make a valid point as far as the discussion is concerned. It's unfortunately still a little more complicated than that, though. Like I said, there's more to a password than length and symbol type. Even something like cF*+@aXbIdFHje2vZiU-1 is less secure than if it were generated by a good PRNG. D0@ndro!dsDr@3@m0f3l3ctr!cSh33p? is also insecure, though it might have been considered secure 4-5 years ago. You see what I'm saying? Then of course there's hash algorithms and how those are used to authenticate the passwords themselves, etc. permalink fedilink source parent
[–] iopq@lemmy.world 8 points 3 years ago (1 child) My Wells Fargo password used to be max 8 characters, and when you use the phone you you can basically use the keypad to log in. So it's basically 8 DIGITS permalink fedilink source parent hideshow 2 child comments replies: [–] Smokeless7048@lemmy.world 1 point 3 years ago Wow, super secure! permalink fedilink source parent
[–] Smokeless7048@lemmy.world 1 point 3 years ago Wow, super secure! permalink fedilink source parent
[–] graphite@lemmy.world 1 point 3 years ago* (last edited 3 years ago) (1 child) 32 is a damn strong password Not necessarily: only if it's generated properly, and only for the moment - that will change in the next few years. You do realize that length and symbol type are only 2 out of many other factors that go into a strong password? permalink fedilink source parent hideshow 2 child comments replies: [–] Smokeless7048@lemmy.world 2 points 3 years ago (1 child) Ok, fair, not all 32 digit passwords will be secure. 11111111111111111111111111111111 is not secure, but I was trying to imply, in a properly generated password, 32 digits long is very secure. permalink fedilink source parent hideshow 2 child comments replies: [–] graphite@lemmy.world 1 point 3 years ago* but I was trying to imply, in a properly generated password, 32 digits long is very secure. I understand, and I think you make a valid point as far as the discussion is concerned. It's unfortunately still a little more complicated than that, though. Like I said, there's more to a password than length and symbol type. Even something like cF*+@aXbIdFHje2vZiU-1 is less secure than if it were generated by a good PRNG. D0@ndro!dsDr@3@m0f3l3ctr!cSh33p? is also insecure, though it might have been considered secure 4-5 years ago. You see what I'm saying? Then of course there's hash algorithms and how those are used to authenticate the passwords themselves, etc. permalink fedilink source parent
[–] Smokeless7048@lemmy.world 2 points 3 years ago (1 child) Ok, fair, not all 32 digit passwords will be secure. 11111111111111111111111111111111 is not secure, but I was trying to imply, in a properly generated password, 32 digits long is very secure. permalink fedilink source parent hideshow 2 child comments replies: [–] graphite@lemmy.world 1 point 3 years ago* but I was trying to imply, in a properly generated password, 32 digits long is very secure. I understand, and I think you make a valid point as far as the discussion is concerned. It's unfortunately still a little more complicated than that, though. Like I said, there's more to a password than length and symbol type. Even something like cF*+@aXbIdFHje2vZiU-1 is less secure than if it were generated by a good PRNG. D0@ndro!dsDr@3@m0f3l3ctr!cSh33p? is also insecure, though it might have been considered secure 4-5 years ago. You see what I'm saying? Then of course there's hash algorithms and how those are used to authenticate the passwords themselves, etc. permalink fedilink source parent
[–] graphite@lemmy.world 1 point 3 years ago* but I was trying to imply, in a properly generated password, 32 digits long is very secure. I understand, and I think you make a valid point as far as the discussion is concerned. It's unfortunately still a little more complicated than that, though. Like I said, there's more to a password than length and symbol type. Even something like cF*+@aXbIdFHje2vZiU-1 is less secure than if it were generated by a good PRNG. D0@ndro!dsDr@3@m0f3l3ctr!cSh33p? is also insecure, though it might have been considered secure 4-5 years ago. You see what I'm saying? Then of course there's hash algorithms and how those are used to authenticate the passwords themselves, etc. permalink fedilink source parent
[–] Revan343@lemmy.ca 3 points 3 years ago You think that's bad, a decade ago I had to use a government-run website that required passwords be exactly 8 characters permalink fedilink source parent