Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]
Groups > linux.debian.user > #268458
| From | Pierre-Elliott Bécue <peb@debian.org> |
|---|---|
| Newsgroups | linux.debian.user |
| Subject | Re: Root password strength |
| Date | 2024-03-20 19:50 +0100 |
| Message-ID | <Ik9aF-sus-1@gated-at.bofh.it> (permalink) |
| References | (4 earlier) <Ik6Zb-r8j-5@gated-at.bofh.it> <Ik7sd-rhG-1@gated-at.bofh.it> <Ik84V-rJM-3@gated-at.bofh.it> <Ik8eB-rNd-11@gated-at.bofh.it> <Ik90Z-spl-1@gated-at.bofh.it> |
| Organization | linux.* mail to news gateway |
[Multipart message — attachments visible in raw view] - view raw
John Hasler <john@sugarbit.com> wrote on 20/03/2024 at 19:35:42+0100: > Pierre-Elliott Bécue writes: >> My home sees plenty different people coming in. Some I trust, some I >> trust less. Also videocalls is a nice way to get a paper password >> recorded (and yes it happens). > > I keep my passwords in a small book the size of a passport and I > secure it the same way I secure my wallet. And yet your digital persona is less secure than if you didn't do it. > No visitor is going to get access to it If you indeed put your wallet in a safe, then I can understand this statement, otherwise it's just overly optimistic. > and no video call would get a look at it (if I did those). Bruce > Schneier recommends this approach. Most people are going to use > crackable passwords if you insist that they memorize them. You can't > stop that by yelling at them. Bruce is excellent, I don't know whether he actually stated what you said, but even if he did, being excellent doesn't mean that whatever he says is golden. And remembering a passphrase is easy, not easily crackable if well chosen, and you don't actually need to remember more than two of them (let's go with three if you have a PGP key). > I use a password manager for non-critical passwords, but I also write > them down in my password book. I don't want to lose them in a disk crash > and I won't store anthing important in the "cloud". And then, backups were invented. > The never write down a password rule originated back when you only had > one 6 or 8 character password which you used to log on to the VAX via > the VT100 in your cubicle. People would stick a slip of paper with > their password on it under the keyboard where the janitor could get at I don't know whether this is true or false, and it doesn't really change a thing. As the other subthreads I'll leave things there, feel free to defend one more time a bad practice regarding password management if you feel like it. -- PEB
Back to linux.debian.user | Previous | Next — Previous in thread | Next in thread | Find similar | Unroll thread
Root password strength Jan Krapivin <daydreamer199005@gmail.com> - 2024-03-19 15:50 +0100
Re: Root password strength Jan Krapivin <daydreamer199005@gmail.com> - 2024-03-19 16:00 +0100
Re: Root password strength Dan Ritter <dsr@randomstring.org> - 2024-03-19 16:10 +0100
Re: Root password strength debian-user@howorth.org.uk - 2024-03-19 16:50 +0100
Re: Root password strength Greg Wooledge <greg@wooledge.org> - 2024-03-19 21:20 +0100
Re: Root password strength Greg Wooledge <greg@wooledge.org> - 2024-03-19 16:10 +0100
Re: Root password strength jeremy ardley <jeremy.ardley@gmail.com> - 2024-03-19 21:30 +0100
Re: Root password strength <tomas@tuxteam.de> - 2024-03-20 06:40 +0100
Re: Root password strength Jeffrey Walton <noloader@gmail.com> - 2024-03-20 07:10 +0100
Re: Root password strength tomas@tuxteam.de - 2024-03-20 08:40 +0100
Re: Root password strength jeremy ardley <jeremy.ardley@gmail.com> - 2024-03-20 08:50 +0100
Re: Root password strength Michael Kjörling <2695bd53d63c@ewoof.net> - 2024-03-20 12:10 +0100
Re: Root password strength <tomas@tuxteam.de> - 2024-03-20 12:20 +0100
Re: Root password strength Michael Kjörling <2695bd53d63c@ewoof.net> - 2024-03-20 13:20 +0100
Re: Root password strength jeremy ardley <jeremy.ardley@gmail.com> - 2024-03-20 12:30 +0100
Re: Root password strength Michael Kjörling <2695bd53d63c@ewoof.net> - 2024-03-20 13:10 +0100
Re: Root password strength Dan Ritter <dsr@randomstring.org> - 2024-03-20 13:40 +0100
Re: Root password strength Jeffrey Walton <noloader@gmail.com> - 2024-03-20 14:30 +0100
Re: Root password strength <tomas@tuxteam.de> - 2024-03-20 14:50 +0100
Re: Root password strength Marco Moock <mm@dorfdsl.de> - 2024-03-19 16:40 +0100
Re: Root password strength Michael Kjörling <2695bd53d63c@ewoof.net> - 2024-03-19 20:40 +0100
Re: Root password strength debian-user@howorth.org.uk - 2024-03-19 22:00 +0100
Re: Root password strength Pierre-Elliott Bécue <peb@debian.org> - 2024-03-20 16:00 +0100
Re: Root password strength Michael Kjörling <2695bd53d63c@ewoof.net> - 2024-03-20 16:20 +0100
Re: Root password strength Jan Krapivin <daydreamer199005@gmail.com> - 2024-03-20 16:30 +0100
Re: Root password strength John Hasler <john@sugarbit.com> - 2024-03-20 17:10 +0100
Re: Root password strength Pierre-Elliott Bécue <peb@debian.org> - 2024-03-20 17:20 +0100
Re: Root password strength Pierre-Elliott Bécue <peb@debian.org> - 2024-03-20 18:50 +0100
Re: Root password strength Michael Kjörling <2695bd53d63c@ewoof.net> - 2024-03-20 19:10 +0100
Re: Root password strength Pierre-Elliott Bécue <peb@debian.org> - 2024-03-20 19:30 +0100
Re: Root password strength Pierre-Elliott Bécue <peb@debian.org> - 2024-03-20 19:50 +0100
Re: Root password strength Lee <ler762@gmail.com> - 2024-03-20 20:50 +0100
Re: Root password strength Pierre-Elliott Bécue <peb@debian.org> - 2024-03-20 21:00 +0100
Re: Root password strength Lee <ler762@gmail.com> - 2024-03-20 21:30 +0100
Re: Root password strength <tomas@tuxteam.de> - 2024-03-20 18:50 +0100
Re: Root password strength John Hasler <john@sugarbit.com> - 2024-03-20 19:50 +0100
Re: Root password strength "Alexander V. Makartsev" <avbetev@gmail.com> - 2024-03-21 20:40 +0100
Re: Root password strength Jan Krapivin <daydreamer199005@gmail.com> - 2024-03-22 11:00 +0100
Re: Root password strength Joe <joe@jretrading.com> - 2024-03-22 12:00 +0100
Re: Root password strength "Alexander V. Makartsev" <avbetev@gmail.com> - 2024-03-22 13:30 +0100
Re: Root password strength Michael Kjörling <2695bd53d63c@ewoof.net> - 2024-03-23 10:50 +0100
Re: Root password strength Lee <ler762@gmail.com> - 2024-03-23 01:10 +0100
Re: Root password strength Michael Kjörling <2695bd53d63c@ewoof.net> - 2024-03-23 11:30 +0100
Re: Root password strength Pierre-Elliott Bécue <peb@debian.org> - 2024-03-20 16:50 +0100
Re: Root password strength John Hasler <john@sugarbit.com> - 2024-03-20 17:00 +0100
Re: Root password strength Pierre-Elliott Bécue <peb@debian.org> - 2024-03-20 17:10 +0100
Re: Root password strength Jeffrey Walton <noloader@gmail.com> - 2024-03-20 17:30 +0100
Re: Root password strength Max Nikulin <manikulin@gmail.com> - 2024-03-20 17:50 +0100
Re: Root password strength Pierre-Elliott Bécue <peb@debian.org> - 2024-03-20 18:00 +0100
Re: Root password strength Jeffrey Walton <noloader@gmail.com> - 2024-03-20 18:40 +0100
Re: Root password strength Pierre-Elliott Bécue <peb@debian.org> - 2024-03-20 18:50 +0100
Re: Root password strength Jeffrey Walton <noloader@gmail.com> - 2024-03-20 19:20 +0100
Re: Root password strength Pierre-Elliott Bécue <peb@debian.org> - 2024-03-20 19:40 +0100
Re: Root password strength Jeffrey Walton <noloader@gmail.com> - 2024-03-20 21:20 +0100
Re: Root password strength Curt <curty@free.fr> - 2024-03-21 17:50 +0100
Re: Root password strength John Hasler <john@sugarbit.com> - 2024-03-20 19:40 +0100
Re: Root password strength Pierre-Elliott Bécue <peb@debian.org> - 2024-03-20 19:50 +0100
Re: Root password strength John Hasler <john@sugarbit.com> - 2024-03-20 17:30 +0100
Re: Root password strength Pierre-Elliott Bécue <peb@debian.org> - 2024-03-20 18:00 +0100
Re: Root password strength Michael Kjörling <2695bd53d63c@ewoof.net> - 2024-03-20 19:20 +0100
Re: Root password strength Michael Kjörling <2695bd53d63c@ewoof.net> - 2024-03-20 17:10 +0100
csiph-web