helpGna! Administration - Support: sr #2891, Password checking is ridiculously...

 
 
Show feedback again

sr #2891: Password checking is ridiculously complex and annoying

Submitted by:  Tomáš Hnyk <sup>
Submitted on:  Wed 28 Mar 2012 07:40:41 AM UTC  
 
Category: Savane ToolsPriority: 5 - Normal
Severity: 4 - ImportantStatus: None
Privacy: PublicAssigned to: None
Open/Closed: OpenOperating System: GNU/Linux

Add a New Comment (Rich MarkupRich Markup):
   

You are not logged in

Please log in, so followups can be emailed to you.

 

Sun 13 Jan 2013 09:58:52 PM UTC, comment #2:

Yeah, my browser now remembers my password here and there is not problem anymore, but registering is a pain when one does not know the requirements.

Tomáš Hnyk <sup>
Sun 13 Jan 2013 09:55:48 PM UTC, comment #1:

there is 3rd option:
log in using "lost password"
simple way is always copy&paste premade password
when loging in, checking "remember me" solves lot of problems
thus u dont need to remember password at all...
---
as for soulution - i heavily doubt that anyone (except few) remember their passwords without writing them down
would be good if pwd req be 10 chars, lower/upper and at least one of numbers or symbols instead of "satan9rumble*heaven"
(iv used 40 chars long, but took over half minute to key so it was discarded)

Roman Petrinec <petrinec>
Wed 28 Mar 2012 07:40:41 AM UTC, original submission:

Now, you do not tell me how many characters I need, how many different classes and that I cannot use some "known sequences" (what is bad about asdfg - it is easy to type and remember). That is so annoying, I had to try a password at least a fifteen time before it was accepted (it now contains "savana is stupid" - and even if I weaken my password this way, all the better, I do not care if my gna.org account gets hacked, I am creating it to fill one bug, so why should I care).

To solve this bug:
1. List complete requirements for the password when registering (and preferable when logging in too - how can I remember which password I used when I do not know the requirements? Is that the password where first letter is capital, or need I add a number to the end, does it need a semicolon too? how long exactly?)

2. Ease the requirements. My bank wants a password half as complicated as yours!

Note: if you are trying to educate users to use complex passwords, that will not work. Those who care do care, those who do not care (like myself) will not care and only will be annoyed.

Tomáš Hnyk <sup>

 

(Note: upload size limit is set to 1024 kB, after insertion of the required escape characters.)

Attach File(s):
   
   
Comment:
   

No files currently attached

 

Depends on the following items: None found

Items that depend on this one: None found

 

Carbon-Copy List
  • -unavailable- added by petrinec (Posted a comment)
  • -unavailable- added by sup (Submitted the item)
  •  

    Do you think this task is very important?
    If so, you can click here to add your encouragement to it.
    This task has 0 encouragements so far.

    Only logged-in users can vote.

     

    Please enter the title of George Orwell's famous dystopian book (it's a date):

     

     

    No Changes Have Been Made to This Item
    Show feedback again

    Back to the top


    Powered by Savane 3.1-cleanup