Amicitas@lemmy.world to Technology@lemmy.worldEnglish · 2 months agoNIST proposes barring some of the most nonsensical password rulesarstechnica.comexternal-linkmessage-square179fedilinkarrow-up1553file-textcross-posted to: cybersecurity@sh.itjust.workstechnology@lemmit.onlinecybersecurity@sh.itjust.works
arrow-up1553external-linkNIST proposes barring some of the most nonsensical password rulesarstechnica.comAmicitas@lemmy.world to Technology@lemmy.worldEnglish · 2 months agomessage-square179fedilinkfile-textcross-posted to: cybersecurity@sh.itjust.workstechnology@lemmit.onlinecybersecurity@sh.itjust.works
minus-squaresugar_in_your_tea@sh.itjust.workslinkfedilinkEnglisharrow-up1·edit-22 months agoI usually do 256 characters. That’s long enough that most password managers top out anyway (mine tops out at 128), and it shouldn’t ever present a DOS risk. Anything much beyond that and you’ll go beyond the hash length.
I usually do 256 characters. That’s long enough that most password managers top out anyway (mine tops out at 128), and it shouldn’t ever present a DOS risk. Anything much beyond that and you’ll go beyond the hash length.