Hacker News new | ask | show | jobs
by jrs235 5123 days ago
Displaying password rules inform a hacker what rules to obey and follow, reducing the number of combinations they have to try. Rather than have rules, after a user creates/enters their password just let them know if it sucks or not, perhaps give some "stats" as to how long it would probably take to crack. Scare them into something stronger, but don't force them into "post-it noting their password".
1 comments

For home use, I'm not sure what's wrong with a post-it...

(Not talking about a bank password here).

Touche. For/at home I might have a post-it with numerous crazy passwords but no identification as to what sites/systems they are for.
Yes, so next time your cleaning lady can use it. Or your babysitter --or her boyfriend. Or any random burglar...
And make Hacker News comments on my name? :-)