Click here to Skip to main content
15,889,462 members

Welcome to the Lounge

   

For discussing anything related to a software developer's life but is not for programming questions. Got a programming question?

The Lounge is rated Safe For Work. If you're about to post something inappropriate for a shared office environment, then don't post it. No ads, no abuse, and no programming questions. Trolling, (political, climate, religious or whatever) will result in your account being removed.

 
GeneralRe: I'm Going To Take A Hostage Pin
Super Lloyd30-Jun-20 2:34
Super Lloyd30-Jun-20 2:34 
PraiseRe: I'm Going To Take A Hostage Pin
CPallini30-Jun-20 2:34
mveCPallini30-Jun-20 2:34 
GeneralRe: I'm Going To Take A Hostage Pin
User 1106097930-Jun-20 2:53
User 1106097930-Jun-20 2:53 
GeneralRe: I'm Going To Take A Hostage Pin
Slacker00730-Jun-20 2:45
professionalSlacker00730-Jun-20 2:45 
GeneralRe: I'm Going To Take A Hostage Pin
Kornfeld Eliyahu Peter30-Jun-20 2:55
professionalKornfeld Eliyahu Peter30-Jun-20 2:55 
GeneralRe: I'm Going To Take A Hostage Pin
MadGerbil30-Jun-20 3:07
MadGerbil30-Jun-20 3:07 
GeneralRe: I'm Going To Take A Hostage Pin
GuyThiebaut30-Jun-20 3:17
professionalGuyThiebaut30-Jun-20 3:17 
GeneralRe: I'm Going To Take A Hostage Pin
Member 1330167930-Jun-20 21:37
Member 1330167930-Jun-20 21:37 
Quote:
this is because if your password is compromised and I have it, then I have only 30 days to use it, before I can't anymore. Not so great for you and the company during those 30 days, but it is better than nothing, I guess.

It is a valid level of security.


It isn't a valid level of security. That policy came from an era when PCs were not connected to the internet, hence someone who wanted to use your compromised password would have to literally break into the office. So limiting the passwords to 30 days mitigated that risk.

Now, if your password is compromised they will, in the first two minutes, install a keylogger, thereby having all future passwords of yours.

It gets worse - because of the requirement of regular password changing, people simply use easy to remember passwords. In effect, the password expiry policy actually forces people to use less secure passwords than they would have done without the policy.

So, no, password expiry is stupid policy, encourages weaker passwords and, IME, only recommended by people who don't know much about security, encryption or stuff like that (i.e. IT and Network staff).
GeneralRe: I'm Going To Take A Hostage Pin
Bruce Patin1-Jul-20 3:22
Bruce Patin1-Jul-20 3:22 
GeneralRe: I'm Going To Take A Hostage Pin
Mike Hankey30-Jun-20 2:54
mveMike Hankey30-Jun-20 2:54 
GeneralRe: I'm Going To Take A Hostage Pin
W Balboos, GHB30-Jun-20 3:02
W Balboos, GHB30-Jun-20 3:02 
GeneralRe: I'm Going To Take A Hostage Pin
Maximilien30-Jun-20 2:58
Maximilien30-Jun-20 2:58 
GeneralRe: I'm Going To Take A Hostage Pin
MadGerbil30-Jun-20 3:06
MadGerbil30-Jun-20 3:06 
GeneralRe: I'm Going To Take A Hostage Pin
Amarnath S30-Jun-20 3:18
professionalAmarnath S30-Jun-20 3:18 
GeneralRe: I'm Going To Take A Hostage Pin
MadGerbil30-Jun-20 3:21
MadGerbil30-Jun-20 3:21 
GeneralRe: I'm Going To Take A Hostage Pin
Richard Deeming30-Jun-20 3:22
mveRichard Deeming30-Jun-20 3:22 
GeneralRe: I'm Going To Take A Hostage Pin
Amarnath S30-Jun-20 3:31
professionalAmarnath S30-Jun-20 3:31 
GeneralRe: I'm Going To Take A Hostage Pin
Kornfeld Eliyahu Peter30-Jun-20 3:24
professionalKornfeld Eliyahu Peter30-Jun-20 3:24 
GeneralRe: I'm Going To Take A Hostage Pin
OriginalGriff30-Jun-20 3:28
mveOriginalGriff30-Jun-20 3:28 
GeneralRe: I'm Going To Take A Hostage Pin
Kornfeld Eliyahu Peter30-Jun-20 3:31
professionalKornfeld Eliyahu Peter30-Jun-20 3:31 
GeneralRe: I'm Going To Take A Hostage Pin
Member 1330167930-Jun-20 20:57
Member 1330167930-Jun-20 20:57 
GeneralRe: I'm Going To Take A Hostage Pin
Bruce Patin1-Jul-20 3:23
Bruce Patin1-Jul-20 3:23 
GeneralRe: I'm Going To Take A Hostage Pin
kalberts30-Jun-20 3:39
kalberts30-Jun-20 3:39 
GeneralRe: I'm Going To Take A Hostage Pin
MarkTJohnson30-Jun-20 3:59
professionalMarkTJohnson30-Jun-20 3:59 
GeneralRe: I'm Going To Take A Hostage Pin
Slow Eddie1-Jul-20 2:46
professionalSlow Eddie1-Jul-20 2:46 

General General    News News    Suggestion Suggestion    Question Question    Bug Bug    Answer Answer    Joke Joke    Praise Praise    Rant Rant    Admin Admin   

Use Ctrl+Left/Right to switch messages, Ctrl+Up/Down to switch threads, Ctrl+Shift+Left/Right to switch pages.