Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Code Project
  1. Home
  2. The Lounge
  3. New password in anger

New password in anger

Scheduled Pinned Locked Moved The Lounge
28 Posts 19 Posters 0 Views 1 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • S Super Lloyd

    I just did it! On a site I am really interested in! (Xamarin forums) After so many failed attempt at creating password (sorry, to short - 12 characters minimum, sorry must contains a number, sorry must contains an upper case letter, sorry must contains a symbol, sorry contain your name...) (you know what? I bet they are not really sorry!) Just typed some random key in anger in notepad and pasted it! I absolutely intend to forget the password! In fact I don't even know it, won't bother save it! Hey, that's why they have the "I forgot my password" button. This is the new log in button! :omg: :mad: :wtf:

    A new .NET Serializer All in one Menu-Ribbon Bar Taking over the world since 1371!

    L Offline
    L Offline
    Lost User
    wrote on last edited by
    #8

    This is lame. It's much more fun if they add rules like no more than three consecutive letters from your name (and fail to implement it correctly, because two consecutive letters already led to rejection of the password) and require you to change the password at least two times a month. People with names like Max Pax have little problems, but those with longer names and more common combinations practically could not come up with anything they could remember.

    The language is JavaScript. that of Mordor, which I will not utter here
    This is Javascript. If you put big wheels and a racing stripe on a golf cart, it's still a fucking golf cart.
    "I don't know, extraterrestrial?" "You mean like from space?" "No, from Canada." If software development were a circus, we would all be the clowns.

    M 1 Reply Last reply
    0
    • J Jeremy Falcon

      I vote for "Case-Sensitive". It's like "case-insensitive", but all the cool kids are using it.

      Jeremy Falcon

      M Offline
      M Offline
      Mark_Wallace
      wrote on last edited by
      #9

      I don't mix with the cool kids; they're just followers. But you make a good point, so I'll go with "case-desensitised".

      I wanna be a eunuchs developer! Pass me a bread knife!

      1 Reply Last reply
      0
      • S Super Lloyd

        I just did it! On a site I am really interested in! (Xamarin forums) After so many failed attempt at creating password (sorry, to short - 12 characters minimum, sorry must contains a number, sorry must contains an upper case letter, sorry must contains a symbol, sorry contain your name...) (you know what? I bet they are not really sorry!) Just typed some random key in anger in notepad and pasted it! I absolutely intend to forget the password! In fact I don't even know it, won't bother save it! Hey, that's why they have the "I forgot my password" button. This is the new log in button! :omg: :mad: :wtf:

        A new .NET Serializer All in one Menu-Ribbon Bar Taking over the world since 1371!

        R Offline
        R Offline
        Ravi Bhavnani
        wrote on last edited by
        #10

        Super Lloyd wrote:

        On a site I am really interested in! (Xamarin forums)

        Curious - are you using XForms or for (like me) using C# to build for Android/iOS only? /ravi

        My new year resolution: 2048 x 1536 Home | Articles | My .NET bits | Freeware ravib(at)ravib(dot)com

        S 1 Reply Last reply
        0
        • R Ravi Bhavnani

          Super Lloyd wrote:

          On a site I am really interested in! (Xamarin forums)

          Curious - are you using XForms or for (like me) using C# to build for Android/iOS only? /ravi

          My new year resolution: 2048 x 1536 Home | Articles | My .NET bits | Freeware ravib(at)ravib(dot)com

          S Offline
          S Offline
          Super Lloyd
          wrote on last edited by
          #11

          yes, I have been using Xamarin Form for a while now! :) it's great!

          A new .NET Serializer All in one Menu-Ribbon Bar Taking over the world since 1371!

          1 Reply Last reply
          0
          • W W Balboos GHB

            There's some intrinsic beauty to you're plan. I don't know what it is but I know it's there.

            Ravings en masse^

            "The difference between genius and stupidity is that genius has its limits." - Albert Einstein

            "If you are searching for perfection in others, then you seek disappointment. If you are seek perfection in yourself, then you will find failure." - Balboos HaGadol Mar 2010

            S Offline
            S Offline
            Super Lloyd
            wrote on last edited by
            #12

            It's genius madness?! :-D

            A new .NET Serializer All in one Menu-Ribbon Bar Taking over the world since 1371!

            1 Reply Last reply
            0
            • M Mark_Wallace

              We decided at work today that an ideal password is "case-insensitive". If you l33t it a bit, it will meet any stupid requirements.

              I wanna be a eunuchs developer! Pass me a bread knife!

              S Offline
              S Offline
              Stefan_Lang
              wrote on last edited by
              #13

              I always thought of people making up password rules as insensitive in any case ;P

              GOTOs are a bit like wire coat hangers: they tend to breed in the darkness, such that where there once were few, eventually there are many, and the program's architecture collapses beneath them. (Fran Poretto)

              1 Reply Last reply
              0
              • S Super Lloyd

                I just did it! On a site I am really interested in! (Xamarin forums) After so many failed attempt at creating password (sorry, to short - 12 characters minimum, sorry must contains a number, sorry must contains an upper case letter, sorry must contains a symbol, sorry contain your name...) (you know what? I bet they are not really sorry!) Just typed some random key in anger in notepad and pasted it! I absolutely intend to forget the password! In fact I don't even know it, won't bother save it! Hey, that's why they have the "I forgot my password" button. This is the new log in button! :omg: :mad: :wtf:

                A new .NET Serializer All in one Menu-Ribbon Bar Taking over the world since 1371!

                M Offline
                M Offline
                Morten Rud Jensen
                wrote on last edited by
                #14

                Sorry but your password must contain an uppercase letter, a number, a haiku, a gang sign, a hieroglyph, and the blood of a virgin.

                :-D ;P :cool:

                S 1 Reply Last reply
                0
                • M Morten Rud Jensen

                  Sorry but your password must contain an uppercase letter, a number, a haiku, a gang sign, a hieroglyph, and the blood of a virgin.

                  :-D ;P :cool:

                  S Offline
                  S Offline
                  Super Lloyd
                  wrote on last edited by
                  #15

                  I like the haiku requirement! ;P

                  A new .NET Serializer All in one Menu-Ribbon Bar Taking over the world since 1371!

                  1 Reply Last reply
                  0
                  • S Super Lloyd

                    I just did it! On a site I am really interested in! (Xamarin forums) After so many failed attempt at creating password (sorry, to short - 12 characters minimum, sorry must contains a number, sorry must contains an upper case letter, sorry must contains a symbol, sorry contain your name...) (you know what? I bet they are not really sorry!) Just typed some random key in anger in notepad and pasted it! I absolutely intend to forget the password! In fact I don't even know it, won't bother save it! Hey, that's why they have the "I forgot my password" button. This is the new log in button! :omg: :mad: :wtf:

                    A new .NET Serializer All in one Menu-Ribbon Bar Taking over the world since 1371!

                    G Offline
                    G Offline
                    George Tourtsinakis
                    wrote on last edited by
                    #16

                    Another Microsoft failure on creating a simple form!Lol I laughed a lot with your post.

                    1 Reply Last reply
                    0
                    • L Lost User

                      This is lame. It's much more fun if they add rules like no more than three consecutive letters from your name (and fail to implement it correctly, because two consecutive letters already led to rejection of the password) and require you to change the password at least two times a month. People with names like Max Pax have little problems, but those with longer names and more common combinations practically could not come up with anything they could remember.

                      The language is JavaScript. that of Mordor, which I will not utter here
                      This is Javascript. If you put big wheels and a racing stripe on a golf cart, it's still a fucking golf cart.
                      "I don't know, extraterrestrial?" "You mean like from space?" "No, from Canada." If software development were a circus, we would all be the clowns.

                      M Offline
                      M Offline
                      MarkTJohnson
                      wrote on last edited by
                      #17

                      Mister Mxyzptlk is hosed then

                      1 Reply Last reply
                      0
                      • S Super Lloyd

                        I just did it! On a site I am really interested in! (Xamarin forums) After so many failed attempt at creating password (sorry, to short - 12 characters minimum, sorry must contains a number, sorry must contains an upper case letter, sorry must contains a symbol, sorry contain your name...) (you know what? I bet they are not really sorry!) Just typed some random key in anger in notepad and pasted it! I absolutely intend to forget the password! In fact I don't even know it, won't bother save it! Hey, that's why they have the "I forgot my password" button. This is the new log in button! :omg: :mad: :wtf:

                        A new .NET Serializer All in one Menu-Ribbon Bar Taking over the world since 1371!

                        D Offline
                        D Offline
                        David C Thompson
                        wrote on last edited by
                        #18

                        I always had the idea that the best way to authenticate a user is to rely on their mailbox. 1) User enters email address and clicks the Login button 2) Website sends email to that account with one-time link 3) User clicks one-time link and that authenticates him into the site Thoughts?

                        S A A Y 4 Replies Last reply
                        0
                        • D David C Thompson

                          I always had the idea that the best way to authenticate a user is to rely on their mailbox. 1) User enters email address and clicks the Login button 2) Website sends email to that account with one-time link 3) User clicks one-time link and that authenticates him into the site Thoughts?

                          S Offline
                          S Offline
                          Super Lloyd
                          wrote on last edited by
                          #19

                          It ain't to bad.. Particularly nowadays where one can read personal email on their phone easily!

                          A new .NET Serializer All in one Menu-Ribbon Bar Taking over the world since 1371!

                          1 Reply Last reply
                          0
                          • S Super Lloyd

                            I just did it! On a site I am really interested in! (Xamarin forums) After so many failed attempt at creating password (sorry, to short - 12 characters minimum, sorry must contains a number, sorry must contains an upper case letter, sorry must contains a symbol, sorry contain your name...) (you know what? I bet they are not really sorry!) Just typed some random key in anger in notepad and pasted it! I absolutely intend to forget the password! In fact I don't even know it, won't bother save it! Hey, that's why they have the "I forgot my password" button. This is the new log in button! :omg: :mad: :wtf:

                            A new .NET Serializer All in one Menu-Ribbon Bar Taking over the world since 1371!

                            D Offline
                            D Offline
                            d shapiro
                            wrote on last edited by
                            #20

                            In a recent ground-up rebuild of an application, I had a related argument with the project lead/client. I tried insisting that we should include no forced rules, but instead provide a strength meter based on the zxcvbn library. My argument: a users password is a users password and who are we to define what is a "correct" password? Instead, we should warn against perceived password strength and accept what the user provides. Final decision? A password must be at least 7 characters long and contain at least one letter and one number. *sigh* "pass123" is considered a "very strong" password. X|

                            S 1 Reply Last reply
                            0
                            • D d shapiro

                              In a recent ground-up rebuild of an application, I had a related argument with the project lead/client. I tried insisting that we should include no forced rules, but instead provide a strength meter based on the zxcvbn library. My argument: a users password is a users password and who are we to define what is a "correct" password? Instead, we should warn against perceived password strength and accept what the user provides. Final decision? A password must be at least 7 characters long and contain at least one letter and one number. *sigh* "pass123" is considered a "very strong" password. X|

                              S Offline
                              S Offline
                              Super Lloyd
                              wrote on last edited by
                              #21

                              Yeah, I know about that, I don't blame the developers! Although.. this is Xamarin[^] we are talking about in this case! I think I should blame the developers here! :laugh:

                              A new .NET Serializer All in one Menu-Ribbon Bar Taking over the world since 1371!

                              1 Reply Last reply
                              0
                              • D David C Thompson

                                I always had the idea that the best way to authenticate a user is to rely on their mailbox. 1) User enters email address and clicks the Login button 2) Website sends email to that account with one-time link 3) User clicks one-time link and that authenticates him into the site Thoughts?

                                A Offline
                                A Offline
                                Andrew Oliver
                                wrote on last edited by
                                #22

                                Email is a really bad way to provide authentication. There is no standard method for authentication in email clients and email has no guarantees of confidentiality or data integrity in transit. It's used at the moment for password recovery but it's far from ideal. OpenID and OAuth are worth looking into. OpenID for authentication and OAuth for authorisation.

                                D 1 Reply Last reply
                                0
                                • S Super Lloyd

                                  I just did it! On a site I am really interested in! (Xamarin forums) After so many failed attempt at creating password (sorry, to short - 12 characters minimum, sorry must contains a number, sorry must contains an upper case letter, sorry must contains a symbol, sorry contain your name...) (you know what? I bet they are not really sorry!) Just typed some random key in anger in notepad and pasted it! I absolutely intend to forget the password! In fact I don't even know it, won't bother save it! Hey, that's why they have the "I forgot my password" button. This is the new log in button! :omg: :mad: :wtf:

                                  A new .NET Serializer All in one Menu-Ribbon Bar Taking over the world since 1371!

                                  K Offline
                                  K Offline
                                  Kirk 10389821
                                  wrote on last edited by
                                  #23

                                  I use an online GUID generator. I change the case of the first Alpha. And I tell chrome to remember it. No security here.

                                  1 Reply Last reply
                                  0
                                  • D David C Thompson

                                    I always had the idea that the best way to authenticate a user is to rely on their mailbox. 1) User enters email address and clicks the Login button 2) Website sends email to that account with one-time link 3) User clicks one-time link and that authenticates him into the site Thoughts?

                                    A Offline
                                    A Offline
                                    adudley
                                    wrote on last edited by
                                    #24

                                    And the password to my email account is 'password' right? Email is not secure though. I think pretty much anyone can read emails flying around the Internet, and anyone I know with imap or pop access don't use ssl as default, which is crazy.

                                    1 Reply Last reply
                                    0
                                    • A Andrew Oliver

                                      Email is a really bad way to provide authentication. There is no standard method for authentication in email clients and email has no guarantees of confidentiality or data integrity in transit. It's used at the moment for password recovery but it's far from ideal. OpenID and OAuth are worth looking into. OpenID for authentication and OAuth for authorisation.

                                      D Offline
                                      D Offline
                                      David C Thompson
                                      wrote on last edited by
                                      #25

                                      Yea thats the right way of doing it. This was more along the lines of something that only needs to be `as-secure-as` your email account. Perhaps the website is a serverless architecture and it uses your email address as your username and for communications, but beyond that it careth not. Like I said, it was an idea but I haven't found a use-case for it just yet.

                                      @dthompsonza

                                      1 Reply Last reply
                                      0
                                      • D David C Thompson

                                        I always had the idea that the best way to authenticate a user is to rely on their mailbox. 1) User enters email address and clicks the Login button 2) Website sends email to that account with one-time link 3) User clicks one-time link and that authenticates him into the site Thoughts?

                                        Y Offline
                                        Y Offline
                                        Ygg Meanhorse
                                        wrote on last edited by
                                        #26

                                        Yeah, no access to email. No log on. Its no good.

                                        1 Reply Last reply
                                        0
                                        • S Super Lloyd

                                          I just did it! On a site I am really interested in! (Xamarin forums) After so many failed attempt at creating password (sorry, to short - 12 characters minimum, sorry must contains a number, sorry must contains an upper case letter, sorry must contains a symbol, sorry contain your name...) (you know what? I bet they are not really sorry!) Just typed some random key in anger in notepad and pasted it! I absolutely intend to forget the password! In fact I don't even know it, won't bother save it! Hey, that's why they have the "I forgot my password" button. This is the new log in button! :omg: :mad: :wtf:

                                          A new .NET Serializer All in one Menu-Ribbon Bar Taking over the world since 1371!

                                          E Offline
                                          E Offline
                                          Eric M We
                                          wrote on last edited by
                                          #27

                                          More and more of my passwords contain disparaging comments about the very service it's for because of this very reason. Is it me or do most of those "I forgot my password" temp. passwords not follow these rules to make a complex password? Ex: Must contain: an uppercase, lowercase, symbol, number, an international airports abbreviation, a 4 digit prime number, your blood type and must be 20 characters long... "I forgot my password" Your temp. pw is: 1947 ?! >_>

                                          1 Reply Last reply
                                          0
                                          Reply
                                          • Reply as topic
                                          Log in to reply
                                          • Oldest to Newest
                                          • Newest to Oldest
                                          • Most Votes


                                          • Login

                                          • Don't have an account? Register

                                          • Login or register to search.
                                          • First post
                                            Last post
                                          0
                                          • Categories
                                          • Recent
                                          • Tags
                                          • Popular
                                          • World
                                          • Users
                                          • Groups