[148088] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: AD and enforced password policies

daemon@ATHENA.MIT.EDU (Gary Buhrmaster)
Mon Jan 2 19:05:53 2012

In-Reply-To: <CAAAwwbUXNEUCqirVE+KidGVjn2nt=r_rY5EhBu_w7uQXcZEh_g@mail.gmail.com>
Date: Tue, 3 Jan 2012 00:05:00 +0000
From: Gary Buhrmaster <gary.buhrmaster@gmail.com>
To: Jimmy Hess <mysidia@gmail.com>
Cc: "Nanog@nanog.org" <Nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

On Mon, Jan 2, 2012 at 22:32, Jimmy Hess <mysidia@gmail.com> wrote:
....
> The sole root cause for "easily guessable passwords"  is  not  lack of
> technical restrictions. It's also:  lazy or limited memory humans who nee=
d
> passwords that they can remember.
>
> Firstname1234! =A0 =A0is very easy to guess, and meets complexity and usu=
al
> length requirements.

Obligatory xkcd reference:  http://xkcd.com/936/

Gary


home help back first fref pref prev next nref lref last post