Penetration Testing mailing list archives
RE: Whitespace in passwords
From: "Craig Wright" <cwright () bdosyd com au>
Date: Wed, 21 Sep 2005 05:27:52 +1000
HI 1st it does not make them untouchable Next, MOST applications do not accept Alt+xxx based passwords - very few users will use them as well Do your users authenticate via a Radius systems, the web...? Any of these will not accept Alt+xxx chars. Most users will have issues using this the following does not make a very memerable password - see how often it is remembered? ╣ß♂|◙O11s Craig -----Original Message----- From: Steve.Cummings () barclayscapital com [mailto:Steve.Cummings () barclayscapital com] Sent: Wed 21/09/2005 2:41 AM To: Craig Wright; BMcAninch () PENSON COM; pen-test () securityfocus com Cc: pand0ra.usa () gmail com Subject: Re: Whitespace in passwords Why aren't alt characters feasible alt255 is an easy one for anyone to remember and if the policy for passwords dictates the requirement then most large firms would accept this especially if it made the password in the current view untouchable for the for seable future
Current thread:
- RE: Whitespace in passwords, (continued)
- RE: Whitespace in passwords Bryan McAninch (Sep 19)
- Re: Whitespace in passwords Tim (Sep 19)
- RE: Whitespace in passwords Craig Wright (Sep 20)
- Re: Whitespace in passwords Tim (Sep 20)
- RE: Whitespace in passwords Craig Wright (Sep 20)
- Re: Whitespace in passwords Steve.Cummings (Sep 21)
- Message not available
- Re: Whitespace in passwords Sahir Hidayatullah (Sep 22)
- Message not available
- RE: Whitespace in passwords Bryan McAninch (Sep 19)
- RE: Whitespace in passwords Steve.Cummings (Sep 21)
- Re: Whitespace in passwords Steve.Cummings (Sep 21)
- Re: Whitespace in passwords Steve.Cummings (Sep 21)
- RE: Whitespace in passwords Craig Wright (Sep 21)
- Re: Whitespace in passwords Steve.Cummings (Sep 21)
- RE: Whitespace in passwords Craig Wright (Sep 21)
- RE: Whitespace in passwords Craig Wright (Sep 21)