<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>oldmatebrendo.com &#187; crack</title>
	<atom:link href="http://oldmatebrendo.com/tag/crack/feed/" rel="self" type="application/rss+xml" />
	<link>http://oldmatebrendo.com</link>
	<description>the incoherent ramblings of brendo</description>
	<lastBuildDate>Fri, 18 Sep 2009 01:02:58 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>the problem with passwords</title>
		<link>http://oldmatebrendo.com/2007/10/the-problem-with-passwords/</link>
		<comments>http://oldmatebrendo.com/2007/10/the-problem-with-passwords/#comments</comments>
		<pubDate>Tue, 02 Oct 2007 01:39:23 +0000</pubDate>
		<dc:creator>brendo</dc:creator>
				<category><![CDATA[All Posts]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[crack]]></category>
		<category><![CDATA[memory]]></category>
		<category><![CDATA[opinions]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[passwords]]></category>

		<guid isPermaLink="false">http://oldmatebrendo.com/?p=8</guid>
		<description><![CDATA[The expiring password is a practice that I am not a fan of.
I see the benefit(s?):

If someone has intercepted/cracked your password, changing it will block their access.
Umm&#8230;

I&#8217;m sure there are others&#8230;  While I try to think of those, let&#8217;s look at the drawbacks:

Whenever you change your password it is something more that you have [...]]]></description>
			<content:encoded><![CDATA[<p>The expiring password is a practice that I am not a fan of.<br />
I see the benefit(s?):</p>
<ul>
<li>If someone has intercepted/cracked your password, changing it will block their access.</li>
<li>Umm&#8230;</li>
</ul>
<p>I&#8217;m sure there are others&#8230;  While I try to think of those, let&#8217;s look at the drawbacks:</p>
<ul>
<li>Whenever you change your password it is something more that you have to remember. Passwords are usually required to be 6-10 characters, even though the human short-term memory can, generally, only remember between five and nine things of a particular kind: letters, digits, words etc. A new 10 character password every 30 days is keeping that overworked brain very busy.</li>
<li>People have bad memories and often forget their new passwords which results in lost time, lost productivity and general stress and frustration. This applies not only to the user forgetting the password, but the poor sod who has to reset 100 passwords every month because people keep forgetting what their new password is.</li>
<li>If you need to remember something what do you do?&#8230; I write it down. Surely an old password that no-one knows is more secure than a new password written down on paper/txt document with a username and website so that you can remember what this password is for. Don&#8217;t write this one off&#8230; In client places, I have seen post-its on the monitor with eBay, internet banking and email username and password combinations labeled just to name a few.</li>
<li>When put on the spot (your password has expired, please enter a new one, NOW!) &#8211; people are more likely to just make &#8220;an easy password for now and change it later&#8221;. We all know that these never get changed.</li>
</ul>
<p>This is just my take on the ever frustrating process of remembering far too many passwords and having to change those far too often.</p>
<p>The inspiration for this post was an error message I got at work today while trying to use my old password, forgetting that it had expired and I now have a new one. The message made me giggle:</p>
<p>Login Failed:</p>
<p># You may have typed the wrong password<br />
# This user ID may not exist<br />
# If you are a resident of Italy, your password may have expired.</p>
<p>Moral of the story is, watch out Italians.</p>
]]></content:encoded>
			<wfw:commentRss>http://oldmatebrendo.com/2007/10/the-problem-with-passwords/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>
