[153522] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: LinkedIn password database compromised

daemon@ATHENA.MIT.EDU (Randy Bush)
Thu Jun 7 18:49:58 2012

Date: Thu, 07 Jun 2012 15:49:18 -0700
From: Randy Bush <randy@psg.com>
To: Michael Hallgren <m.hallgren@free.fr>
In-Reply-To: <1339104959.27885.10.camel@home>
Cc: nanog@nanog.org
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

>> the 'single sign on' i encourage for the end using human beings i
>> support is 1password and its ilk.  it provides the user with one
>> sign-on yet strongly encourages separation of identities and strong
>> passwords for sites.
> 
> Local repository of passwords, aggregation in a way. Right? Encrypted?
> Open source?

local repository good, i.e. the user owns and controls.  others can not
associate the user's different identities.  (again, run the ghostery
browser add-on)

encrypted good, a bit protected from loss of laptop, a 'maid attack',
etc.

open source sure would be good

randy


home help back first fref pref prev next nref lref last post