OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
NFR Wizards Archive: Re: password aging

Re: password aging


Joseph S. D. Yao (jsdycospo.osis.gov)
Tue, 1 Sep 1998 09:58:42 -0400 (EDT)


> This is true. It's also "standard" practice...One of the goals of my group
> is to _reduce_ the number of calls
> to the help-desk. Please keep in mind that this is only a _proposed_
> change, and it hasn't been approvee yet.

If reducing calls is a goal, why increase them by not telling the user
why the password is rejected? ;-)

> Scalability is an issue. We're talking about (at least) a 128 bit
> keyspace.

The ARGUMENT doesn't scale perfectly. Analogies rarely do. I believe
that a system-wide old-password database is still not the wisest
choice.

--
Joe Yao				jsdycospo.osis.gov - Joseph S. D. Yao
COSPO Computer Support						EMT-A/B
-----------------------------------------------------------------------
This message is not an official statement of COSPO policies.



This archive was generated by hypermail 2.0b3 on Sat Jul 17 1999 - 07:11:46 CDT