Path: csiph.com!weretis.net!feeder8.news.weretis.net!news.samoylyk.net!gothmog.csi.it!bofh.it!news.nic.it!robomod From: Joe Newsgroups: linux.debian.user Subject: Re: Writing passwords down Date: Thu, 19 Dec 2024 12:20:01 +0100 Message-ID: References: X-Mailbox-Line: From debian-user-request@lists.debian.org Thu Dec 19 11:13:59 2024 Old-Return-Path: X-Amavis-Spam-Status: No, score=-6.598 tagged_above=-10000 required=5.3 tests=[BAYES_00=-2, KHOP_HELO_FCRDNS=0.4, LDO_WHITELIST=-5, RCVD_IN_VALIDITY_CERTIFIED_BLOCKED=0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001] autolearn=ham autolearn_force=no X-Policyd-Weight: using cached result; rate: -4.6 MIME-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit X-Mailing-List: archive/latest/818267 List-ID: List-URL: List-Archive: https://lists.debian.org/msgid-search/20241219111342.1f43c406@jrenewsid.jretrading.com Approved: robomod@news.nic.it Lines: 32 Organization: linux.* mail to news gateway Sender: robomod@news.nic.it X-Original-Date: Thu, 19 Dec 2024 11:13:42 +0000 X-Original-Message-ID: <20241219111342.1f43c406@jrenewsid.jretrading.com> X-Original-References: <20241215134918.5a3d0c56@acer-suse.fritz.box> <8o673l-jft.ln1@anthive.com> <87h673djl8.fsf@sugarbit.com> <45b69aa1-56f9-45b6-87ac-3beb5d4f15df@home.arpa> <11d7bc8f-12cf-4e02-b791-9b2a43f99459@hbsys.plus.com> <87y10eccx5.fsf@sugarbit.com> <87r064bh0n.fsf@sugarbit.com> <0m3d3l-e7l2.ln1@q957.zbmc.eu> Xref: csiph.com linux.debian.user:275912 On Thu, 19 Dec 2024 08:56:00 +0000 Chris Green wrote: > John Hasler wrote: > > Karen writes: > > > Well, I do not use hundreds. Still that little black book is, > > > speaking personally, far safer to my mind then any digital > > > solution. > > > > If you are going to use a little black book why not just use random > > passwords? pwgen -s 10 and write it down. > > > Because a long series of random characters is incredibly difficult to > type accurately! > > Horses for courses, I enter login passwords/passphrases quite > frequently (lots of different systems that I ssh to) long, > unmemorable, passwords would be useless. > > For the odd password that needs to be **extra** secure I suppose I > could use a written down password. > Something nobody has mentioned in connection with remembering passwords is how often they are used. Many passwords I use are created and then not used for another year or more. There's no way to remember anything of any complexity at all over that period with no refreshing, whereas even quite a random and complicated one will start to stick if used every day. -- Joe