|
-
March 23rd, 2007, 02:37 PM
#1
Junior Member
Password Reset Requirements
Hello,
After seeing my 4th application/network password expire in as many days, it made me wonder what the quantitative trade-off/ benefit to having password lifetimes is. And if there is such a security benefit, why don't all password protected services require password lifetimes? Also, do people tend to pick "easier" or similar passwords if they know the password will expire in the near future? And if they do tend to pick "easier" or "guessable" passwords, how does this affect application security in relation to the expiration requirement?
Just curious if anyone has some thoughts on this issue, or even better - studies that document the trade-offs and quantitative benefits of these password requirements. I have a theory as to why only certain services/applications require password expiration mechanisms but I'll leave it out until I hear from some more informed opinions...
Thank you in advance.
Similar Threads
-
By cheyenne1212 in forum Miscellaneous Security Discussions
Replies: 7
Last Post: February 1st, 2012, 02:51 PM
-
By Nokia in forum Tips and Tricks
Replies: 4
Last Post: June 18th, 2004, 04:24 PM
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules
|
|