What is your favourite password rule?

  • Tar_Alcaran@sh.itjust.works
    link
    fedilink
    arrow-up
    1
    ·
    8 months ago

    My favorite is “can’t be more than x% similar to the last 3 passwords”. Of course, you shouldn’t ever define what “similar” actually means.

    • jonne@infosec.pub
      link
      fedilink
      arrow-up
      1
      ·
      8 months ago

      And the only way to check that is by storing the previous passwords in a recoverable format.