FAS password complexity requirements

Ricky Zhou ricky at fedoraproject.org
Fri Mar 18 00:58:36 UTC 2011


Hey, so we discussed in the meeting, FAS's password requirements are
currently very lax - just a minimum length of 8 characters.  What do we
think the requirements should be changed to?

One possible strength checker that I mentioned during the meeting was:
http://www.nongnu.org/python-crack/

This can use a dictionary to detect weak passwords.

Thoughts?
Ricky
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 836 bytes
Desc: not available
Url : http://lists.fedoraproject.org/pipermail/infrastructure/attachments/20110317/4aa7edc2/attachment.bin 


More information about the infrastructure mailing list