the Education Posse
  • FAQ
  • Login
  • Public

    • Public
    • Groups
    • Recent tags
    • Popular
    • Directory

Conversation:

Notices

  1. Chimo (chimo)'s status on Wednesday, 19-Jul-2017 16:40:02 EDT Chimo Chimo
    Remote profile options...
    What kind of braindead password requirements are those?!

    * "maximum of 12 characters"

    * "must start with a letter"

    * Symbol set limited to 11 different symbols



    ffs, people… http://sn.chromic.org/attachment/328464
    Wednesday, 19-Jul-2017 16:40:02 EDT from sn.chromic.org at 45°25'15"N 75°41'24"W permalink
    1. Joshua Judson Rosen (rozzin)'s status on Wednesday, 19-Jul-2017 20:12:39 EDT Joshua Judson Rosen Joshua Judson Rosen
      Remote profile options...
      @chimo, I've dealt with systems like that; it often means that they're storing your password in cleartext and(!)/or interconnecting multiple systems that each failing to sanitize their inputs in at least one of those ways.
      Wednesday, 19-Jul-2017 20:12:39 EDT from status.hackerposse.com permalink
      1. Joshua Judson Rosen (rozzin)'s status on Wednesday, 19-Jul-2017 20:15:34 EDT Joshua Judson Rosen Joshua Judson Rosen
        Remote profile options...
        @chimo for example, SSO sytems with an old #IRIX box somewhere in the mix can't enforce ">8-char passwords" and sometimes enforce "<=8".
        Wednesday, 19-Jul-2017 20:15:34 EDT from status.hackerposse.com permalink
    2. Joshua Judson Rosen (rozzin)'s status on Wednesday, 19-Jul-2017 20:32:22 EDT Joshua Judson Rosen Joshua Judson Rosen
      Remote profile options...
      @chimo, "passwords must start with a letter" probably means "cleartext storage" + either "generating code + not sanitizing" or "using the wrong cmp operator". There have been many cases throughout computing history where "starts with a digit" meant "parses as numeric", for example.
      Wednesday, 19-Jul-2017 20:32:22 EDT from status.hackerposse.com permalink

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • Privacy
  • Source
  • Version
  • Contact

the Education Posse is a GNU social hub. It runs version 1.1.3-beta3, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All the Education Posse content and data are available under the Creative Commons Attribution 3.0 license.

Switch to mobile site layout.