Page Summary
dougs.livejournal.com - (no subject)
momentsmusicaux.livejournal.com - (no subject)
call-waiting.livejournal.com - (no subject)
randomchris.livejournal.com - (no subject)
drplokta - (no subject)
autopope.livejournal.com - (no subject)
erindubitably.livejournal.com - (no subject)
andrewhickey.livejournal.com - (no subject)
spacelem.livejournal.com - (no subject)
gwendally.livejournal.com - (no subject)
lpetrazickis.livejournal.com - (no subject)
strawberryfrog.livejournal.com - (no subject)
eatsoylentgreen.livejournal.com - (no subject)
don-fitch.livejournal.com - (no subject)
marrog.livejournal.com - (no subject)
khoth.livejournal.com - (no subject)
henriksdal.livejournal.com - (no subject)
lizw.livejournal.com - (no subject)
crm.livejournal.com - (no subject)
octopoid-horror.livejournal.com - (no subject)
wolfieboy.livejournal.com - Re: Passwords
cartesiandaemon.livejournal.com - (no subject)
Active Entries
- 1: Interesting Links for 11-05-2026
- 2: Interesting Links for 09-05-2026
- 3: Photo cross-post
- 4: Interesting Links for 08-05-2026
- 5: Interesting Links for 06-05-2026
- 6: Life with no children: Art And Tidiness
- 7: Photo cross-post
- 8: Interesting Links for 03-05-2026
- 9: Interesting Links for 29-04-2026
- 10: Photo cross-post
Style Credit
- Style: Neutral Good for Practicality by
Expand Cut Tags
No cut tags
no subject
Date: 2011-06-08 09:41 am (UTC)no subject
Date: 2011-06-08 09:52 am (UTC)no subject
Date: 2011-06-08 10:16 am (UTC)no subject
Date: 2011-06-08 12:32 pm (UTC)In fact unique passwords for service would be *easier* than what I do which is recycle about 6(with variants). Maybe I'll start.
no subject
Date: 2011-06-08 12:43 pm (UTC)Remembering the password for a given website which you might use twice a year sounds a lot more difficult, especially if that password is in no way connected to that website (to avoid making it easily hackable) and might be a string of random digits/letters.
I guess it depends what the passwords are, how abstract they are and how much you use them. I can remember my current (and previous) full bank card details, but I use them a lot. If I had 40 to remember that would be pretty tough.
no subject
Date: 2011-06-08 09:47 am (UTC)no subject
Date: 2011-06-08 09:53 am (UTC)All my passwords are composed of a common prefix, and a unique suffix generated with apg.
The prefix is common, so I can remember it. It's secret and not written down.
The suffixes, I can only remember for a couple of things (Google, PayPal, bank). They're stored (encrypted, using a different old-fashioned secret password) and I have to look them up just about every time I use them.
The prefix is useless on its own. The list of suffixes is useless on its own too. If an attacker gets a complete password, it won't get them access to anything else, and even if they figure out (manual process!) that the prefix is shared, because the suffixes are more or less random, having a single password doesn't much reduce the search space for other passwords.
Of course, the password for my computers is always "trustno1".
no subject
Date: 2011-06-08 09:59 am (UTC)no subject
Date: 2011-06-08 09:59 am (UTC)no subject
Date: 2011-06-08 10:05 am (UTC)no subject
Date: 2011-06-08 11:25 am (UTC)no subject
Date: 2011-06-08 11:50 am (UTC)However, thinking about it, I'd only have to do it once per password, as Firefox would remember it after that.
no subject
Date: 2011-06-08 11:59 am (UTC)no subject
Date: 2011-06-08 01:39 pm (UTC)no subject
Date: 2011-06-08 10:05 am (UTC)I do use the same password on my laptops, though. And there's a (different) password (for my AppleID) which is simple enough for me to remember, because there are occasions when I need it on a machine I don't have SplashID on yet.
Memo to self: must set up two-factor authentication on Google. (Must repo the loaner iPhone 3G so I can install and configure the Google authentication app on an emergency backup device first ...)
no subject
Date: 2011-06-08 10:28 am (UTC)no subject
Date: 2011-06-08 10:16 am (UTC)no subject
Date: 2011-06-08 10:24 am (UTC)no subject
Date: 2011-06-08 09:50 pm (UTC)no subject
Date: 2011-06-08 11:09 am (UTC)At work we have to change passwords every couple of months. For that, I have a system which I can use to generate a long, finite, memorable alphanumeric string.
no subject
Date: 2011-06-08 11:46 am (UTC)However, I really do need to get round to choosing some more passwords and retiring the old ones. It's just... one of those things that you never get round to until it's too late :P
no subject
Date: 2011-06-08 10:07 pm (UTC)Very memorizable, difficult to attack.
no subject
Date: 2011-06-09 02:47 pm (UTC)The worse culprit is probably having too few characters, since it is possible to brute force attack any short passwords these days. An4wtbt! has 8 characters, upper and lower case, digits and punctuation, so assuming about 20 bits of punctuation that's (26+26+10+20)^8 = 2x10^15 possible passwords. I wouldn't be surprised if that could be cracked in a relatively time on a modern GPU.
no subject
Date: 2011-06-08 12:20 pm (UTC)I have another main password (plus variants) for financial stuff. The variant I use for my financial sites - which I try to keep more secure than, say, my LiveJournal - contains a string signifying the date I set that password, so every time I use it I have to note how long it's been since I reset it.
Then I have a unique one for a specific secure application at work.
no subject
Date: 2011-06-08 12:56 pm (UTC)no subject
Date: 2011-06-08 01:39 pm (UTC)no subject
Date: 2011-06-08 02:29 pm (UTC)BTW, did you know that if post your LiveJournal password in a comment it shows up as asterisks?
For example, my LJ password is *********.
See, automatic asterisks. Magic.
no subject
Date: 2011-06-08 02:40 pm (UTC)no subject
Date: 2011-06-08 03:01 pm (UTC)This is Leo from SixApart tech support. Your account may have been compromised by hackers. Please provide your password so we can verify that your data is secure.
no subject
Date: 2011-06-08 01:00 pm (UTC)no subject
Date: 2011-06-08 01:08 pm (UTC)no subject
Date: 2011-06-08 01:08 pm (UTC)no subject
Date: 2011-06-08 01:09 pm (UTC)no subject
Date: 2011-06-08 02:13 pm (UTC)no subject
Date: 2011-06-08 02:17 pm (UTC)no subject
Date: 2011-06-08 04:03 pm (UTC)no subject
Date: 2011-06-08 04:36 pm (UTC)no subject
Date: 2011-06-08 05:18 pm (UTC)no subject
Date: 2011-06-08 05:47 pm (UTC)and one set of cypher based passwords for the sites i do care about, and system logins.
no subject
Date: 2011-06-08 08:05 pm (UTC)They change on different timescales and are of varying lengths and formats.
Re: Passwords
Date: 2011-06-08 11:07 pm (UTC)For everything else, I have unique passwords. I will usually remember then but if I don't, I have OI Safe to remember it for me.
no subject
Date: 2011-06-10 11:55 am (UTC)