Which is worse, a faintly guessable password or one that's so complicated you have to write it down?

abennett

I was reading a post on Bruce Schneier's security blog about 1234 and birthdays being the most common banking PINs and a commenter replied that "It's far better to have slightly more guessable PIN than it is to encourage people to write the bloody things down." What do you think?

Answer this Question

Answers

2 total
jimlynch
Vote Up (1)

Well, I suppose it depends on the likelihood of anybody finding it if you wrote it down. If there's nothing on the password that identifies what it's used for then it might not be of much use to anybody.

Of course you can always use an entire sentence, with numbers and special characters. It might be easier to remember but still hard for somebody to figure out. Spice it up by doing it in a foreign language and that could help too. And use capital letters within the password.

Vote Up (1)

In my experiance as a network admin, I find that neither is the best solution.

 

The main tip I give for any numbers in a password is to create a symbol on the numeric pad. fairly easy to remember and gives out a rather random number sequence. The same thing can be done with any part of the keyboard

 

For example,

M --> 1475963

P --> 1478965

X --> 753951 (or however yo prefer to write the cross !!)

 

Ok not totaly foolproof and undetectable but I've had less "pasword reset" demands since i gave out this tip and nobody writes it down.

Ask a question

Join Now or Sign In to ask a question.
The Facebook IPO may have been a fiasco, but don't put the nail in the coffin just yet for other tech offerings this year.
The U.S. Federal Communications Commission approved a rule change for part of the 800MHz band at a meeting on Thursday, opening the door for Sprint Nextel to use the band for its 4G LTE network.
The newest version of the Oracle NetBeans IDE (integrated developer environment) will come with support for the latest versions of PHP and C++.
Intuit's Quickbooks Online service suffered an outage this week that left "a small subset" of customers unable to access their data, but the company says the problems with the on-demand accounting software have now been fixed.
The mayor of West New York, New Jersey, was arrested together with his son on Thursday, for allegedly hacking into a website that criticized him and his administration.
A recent coding competition in the Boston area brought together IT professionals, medical workers and others with an interest in health IT to show how data analytics can improve health care.
Buffett just bought 63 more newspapers. Is he locking up a dying market, or will paywalls revive papers?
The Executive Branch of the Minnesota state government had its 40,000 end users on a mishmash of e-mail systems when in 2008 its IT group, the Office of Enterprise Technology (OET), decided to tackle the problem.
Young entrepreneur Eric Simons extended AOL's Imagine K12 incubator participation by hiding and sleeping on couches in AOL buildings.
Absinthe 2.0, the jailbreak for iOS 5.1.1, is ready and available for download, the Jailbreak Dream Team announced at the Hack in the Box conference in Amsterdam on Friday.

White Papers & Webcasts

White Paper

IDC Vendor Spotlight

Your company needs backup and recovery that supports a tiered-recovery model. This IDC Vendor Spotlight examines the modern forces driving the advancements in today's data protection technologies, and a complete backup and recovery solution that works across physical, virtual and cloud environments.

White Paper

vRanger Helps Cut Replication Time by Almost 70%

There's a reason why more than 38,000 customers trust vRanger to protect their critical virtual data! In this Quest Software case study, see how vRanger helped Cornerstone Bancshares, Inc. cut replication time from days to minutes - and how this translated to real time and money savings.

White Paper

ESG: Product Brief: Quest vRanger 5.3 brings enterprise-class VMware protection to SMB's

Free paper: how virtualization impacts SMBs, and strategies for enterprise-class VMware protection

White Paper

Forrester Report: The ROI of Cloud Apps

Cloud apps continue to gain momentum in the enterprise as buyers are attracted to fast deployment speeds, low upfront costs, and ongoing flexibility to scale up or down as needs change. This report analyzes the five-year ROI for cloud apps across CRM, ERP, collaboration, and IT service management.

White Paper

The Cloud: Reinventing Enterprise Collaboration

Collaboration and content sharing are not, of course, new concepts. But cloud computing has changed the nature of collaboration, content sharing, document storage and project management to enable more efficient, faster-acting and cost-effective enterprises. According to a new study by IDG Research, the vast majority of knowledge workers (86%) placed a very high level of importance on collaborating with internal coworkers and external stakeholders, and having access to the most up-to-date corporate information. Read how organizations are realizing massive productivity gains by transitioning their content management solutions to cloud-based models.

See more White Papers | Webcasts