[geeks] Secret codes, was US Post Office Website broken again

Phil Stracchino alaric at metrocast.net
Mon Jul 20 15:40:34 CDT 2009


Dan Sikorski wrote:
> Phil Stracchino wrote:
>> I have never understood why so few sites simply let you choose your OWN
>> "secret question".
>>
>>   
> I hate the ones that change.  My favorite 
> movie/restaurant/book/food/pet/author/actor can change pretty quickly.  
> So, to recover my password, I would have to remember what my favorite 
> movie was at the time i created the account?  Right.  Combine that with 
> site's different definition of what a "strong" password is, and 
> arbitrary password change intervals and you have disaster.


This is why I try to pick static, non-obvious challenge/response sets.

For example:

"Forty two."  "Base thirteen."

"Hanover."  "Hangin's too good for'em!"


-- 
  Phil Stracchino, CDK#2     DoD#299792458     ICBM: 43.5607, -71.355
  alaric at caerllewys.net   alaric at metrocast.net   phil at co.ordinate.org
         Renaissance Man, Unix ronin, Perl hacker, Free Stater
                 It's not the years, it's the mileage.



More information about the geeks mailing list