Go Back   Customers Suck! > The Heart of the Site > Unsupportable > Tech help

Closed Thread
 
Thread Tools Display Modes

Password follies
  #1  
Old 06-10-2012, 09:01 PM
DeltaSierra's Avatar
DeltaSierra DeltaSierra is offline
Purgatory escapee
 
Join Date: May 2008
Location: New England
Posts: 672
Default Password follies

In todays day and age, its not uncommon for people to be a member of hundreds of websites, each having their own set of rules regarding logins and pw's. Some have length limits - must be X letters/characters long, or must be no more than X letters/characters long, or must include at least one number, or must include a number AND a symbol, or may not include any symbols or numbers, etc etc you get the picture.

For example just off the top of my head, I have 4 different banks, more than 20 forums, various newspapers/news sites, game sites, blogs, and whatnot that I use every day. Now for my own personal computer, I have different passwords that I reuse - yeah I know we aren't supposed to do this but seriously - HOW can anyone remember 150+ logins/pw's???????? For blogs/forums that I'm not too worried about and simply need to login to make comments or stuff I have one pw that's pretty easy to remember. For stuff like banks and the like I have super strong pw's that use the maximum characters/symbols allowed.

The issue at hand is that with the exception of the maybe 20 or so websites I go to on a daily basis, its freaking hard to remember the pw's for the other 100 or so that I only visit maybe once a week or once a month. And then there's the sites that assign you your login/pw and you can't even change it! How are you supposed to memorize C47dk2W as your login for some obscure website that you visit maybe once a month, and it won't let you change it?

I've heard of people using programs like Keepass and LastPass, but just how safe are these programs? And when you have to deal with something like a computer crash, you're shit outta luck.

I've tried some "formulas" for making passwords such as using the first/last letters of a website combined with a grouping of words/numbers that are easy to remember but when you run into websites that only allow 6-8 characters/symbols or other ones that require you have at least 9 or more it gets more difficult to customize them so that you can actually use/remember them.

So my question is - you IT/techy types, just how do YOU keep up with the multitude of logins/pw's that you have to remember? I'm betting the 150+ I have is just a drop in the bucket compared to some of you - I'm not asking you to give your pw's or your secret, but a little help would go a long way. I'm tired of having to reset pw's because I've forgotten the damn things.
__________________
The large print giveth, and the small print taketh away.

  #2  
Old 06-10-2012, 09:17 PM
Sakka's Avatar
Sakka Sakka is offline
Bench Tech Cog
 
Join Date: Nov 2007
Location: Southern Interior, BC
Posts: 115
Default

Quote:
Quoth DeltaSierra View Post
So my question is - you IT/techy types, just how do YOU keep up with the multitude of logins/pw's that you have to remember? I'm betting the 150+ I have is just a drop in the bucket compared to some of you - I'm not asking you to give your pw's or your secret, but a little help would go a long way. I'm tired of having to reset pw's because I've forgotten the damn things.
I'm one of the ones who uses KeePass. Every time I make a change to it, I make a copy onto a thumb drive that is always on my person (carry it with medication I need to stay alive), there is a copy of the file on my notebook which is almost always within my reach, and two more thumb drives plus a full print out of everything in two different safe deposit boxes at two different banks. (4 thumb drives and two hard copy print outs that are updated bi-weekly or monthly depending on changes)

  #3  
Old 06-10-2012, 09:39 PM
Crossbow's Avatar
Crossbow Crossbow is offline
Release the Snarken!
 
Join Date: Jan 2008
Location: NE Ohio
Posts: 743
Default

Quote:
Quoth Sakka View Post
I'm one of the ones who uses KeePass. Every time I make a change to it, I make a copy onto a thumb drive that is always on my person (carry it with medication I need to stay alive), there is a copy of the file on my notebook which is almost always within my reach, and two more thumb drives plus a full print out of everything in two different safe deposit boxes at two different banks. (4 thumb drives and two hard copy print outs that are updated bi-weekly or monthly depending on changes)
I'll second Sakka. KeePass or PasswordSafe are both secure. I use KeePass, personally, but I know others that use PasswordSafe. My routine is to keep the pw database encrypted with a good password, and keep he file in my Dropbox folder. This way it's synced across my pc, laptops and phone. I also keep a copy on a thumb drive, just in case. My wife has the password and also has access to my Dropbox folder, so she can use it as needed.
__________________
We don't embrace insanity around here. We feel it up, French kiss it, and buy it a drink.

  #4  
Old 06-12-2012, 05:22 PM
suburbandecay suburbandecay is offline
Front End Supervisor
 
Join Date: Nov 2010
Posts: 198
Default

One of the IT security blogs I read posted a link to this: http://www.passwordcard.org/en in regards to the linked in hack. I've been thinking about making one and trying it out. Seems like a very novel way of creating secure passwords

  #5  
Old 06-13-2012, 09:17 PM
draggar's Avatar
draggar draggar is offline
þórr mjǫlnir
 
Join Date: Mar 2007
Location: South Florida
Posts: 1,555
Default

I have a method based on how well I want to protect my account.

I have a basic password and/or phrase. Depending on how important that account is and how it would bother me if someone got the password is how much I add to it.

For example:

password
thisismypassword
1234thisismypassword

... and a few more levels I won't disclose but I guarantee no brute force will get them.
__________________
Quote Dalesys:
... as in "Ifn thet dawg comes at me, Ima gonna shutz ma panz!"

  #6  
Old 06-14-2012, 07:09 PM
tech_monkey's Avatar
tech_monkey tech_monkey is offline
Winsecurity complex
 
Join Date: Mar 2012
Posts: 31
Default

XKCD has it right in my opinion. Add in the minimum extras (punctuation, number and a capital letter) and you have it.
__________________
To ensure it does not happen again, we have changed our slogan to "F%#k you, I'm eating!" ----- Irving Patrick Freleigh

  #7  
Old 06-17-2012, 06:40 PM
Naaman's Avatar
Naaman Naaman is offline
Bagger
 
Join Date: Jul 2006
Location: 20 minutes in the future
Posts: 732
Default

I've used LastPass as a password manager for over a year and not run into any problems with it
__________________
Lady, people aren't chocolates. D'you know what they are mostly? Bastards. Bastard-coated bastards with bastard filling. Dr Cox - Scrubs

  #8  
Old 06-18-2012, 02:50 PM
emax4's Avatar
emax4 emax4 is offline
Area Manager
 
Join Date: Aug 2010
Location: Allison Park, PA
Posts: 1,450
Default

I have issues remembering a lot of my personal account passwords for my internet, electric, and phone bills. When I go to the sites though, I can just check the preferences for my passwords. If using Firefox, I go to Preferences (Mac) --> Security tab --> Saved Passwords. When you click that, it shows the site and the login, then you have to press "Show Passwords". This way instead of fumbling and trying for the right one, I get the correct password on the first try.

Firefox won't let you highlight the list and save it. Instead, you have to take screenshots of it. If you have a PC and are not using a specific screen shot program, you press PrintScreen on your keyboard, then paste it into a paint program or graphics program, crop what you want, and save it. On a Mac you can press Command + Shift + 3 to take a shot of the entire screen, or Command + Shift + 4 to change the cursor shape and draw a rectangle around the area you choose.

  #9  
Old 06-18-2012, 07:13 PM
Cazzi's Avatar
Cazzi Cazzi is online now
Assistant Manager
 
Join Date: Oct 2009
Location: NW England
Posts: 336
Default

I've also been using Lastpass for a while now, also with never a problem

I also use password haystacks for some things too if you prefer not to use a password manager.
__________________
Arp happens!

Just when I was getting used to yesterday, along came today.
Closed Thread

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump



All times are GMT. The time now is 07:25 PM.


vBulletin skins developed by: eXtremepixels
Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.


| Home | Register | FAQ | Calendar | Today's Posts | Search | New Posts |