[Fwd: Re: Co-op Bank and Verified by Visa]

C R Ritson c.r.ritson at newcastle.ac.uk
Mon Jun 22 12:56:38 BST 2009


>I can memorise complex passwords that have to be entered in full, or use
>an encrypted vault; but passwords where I may have to enter the 1st, 4th
>and 7th characters have to be simple enough to count along while
>remembering them, or have to be written down where I can number the
>characters, all of which makes for poor conventional security.

How about insisting on a pass PHRASE so that the dialog can ask for N from M random words in the pass phrase? Has this been done anywhere?

Chris Ritson (Computing Officer and School Safety Officer)

Room 707, Claremont Tower,        EMAIL: C.R.Ritson at ncl.ac.uk
School of Computing Science,      PHONE: +44 191 222 8175
Newcastle University,             FAX  : +44 191 222 8232
Newcastle upon Tyne, UK NE1 7RU.  WEB  : http://www.cs.ncl.ac.uk/






More information about the ukcrypto mailing list