Fwd: Pass-phrases vs. passwords
Robert Parker <[email protected]>
| Newsgroups | gmane.org.user-groups.mlug.main |
|---|---|
| Message-ID | <[email protected]> |
Hey folks, The article referred to below is well worth reading. The main point is that password or phrase should be at least 10 chars and preferably 14. Modern *nix, and Win 2000/XP users can use up to 127 chars, Win 9x/ME don't bother it's truncated to 8 chars anyway. Bob ---------- Forwarded Message ---------- Subject: Pass-phrases vs. passwords Date: Tue, 15 Feb 2005 08:52:36 -0500 From: Eric Dunbar <[email protected]> To: Ubuntu Help and User Discussions <[email protected]>, [email protected] Even though this comes from a tainted source, it's still an interesting discussion about the use of "pass phrases" vs. passwords: "Do you see a pattern here? Pass-phrase LENGTH, not complexity defeats these attacks. Short, but complex passwords should be shunned as they are not truly secure anymore and you are deceiving yourself if you think they are. Long pass-phrases (14 characters or more) are the future (along with 2-factor or more authN, but that's another blog for another day) and are the only way to go if you want to ensure that you won't get hacked via any type of password based attack of any kind." <http://weblogs.asp.net/robert_hensing/archive/2004/07/28/199610.aspx> PS FM(y)I What is the password length for *nix systems using the different (& most common) types of authentication? -- ubuntu-users mailing list [email protected] http://lists.ubuntu.com/mailman/listinfo/ubuntu-users -------------------------------------------------------