Jump to content

Password Management Strategy


spootnack

Recommended Posts

Hello guys.

These days, I must redefine my Password Management Strategy.

passwordy.jpg

I hesitate between 3 solution :


  1. An easy solution. Using a pattern. (8-12 characters)
    Example : here
    Advantage(s) :
    - All pass are differents.
    - If the pattern is good, the passwords are strong.
    - Softwareless.
    - Passwords are stored anywhere.
    Disadvantage(s) :
    - Require brain activity :D
    - If the pattern is NOT good, the passwords could be guessed.
    - Need be entered manually (first time on every computers).
    - (No Security Against Keyloggers unless you use something like Keyscrambler, Need FF addon or the standard soft.) ?
  2. Using a "cloud" passwords manager.
    LastPass or Roboform solutions,
    Advantage(s) :
    - All pass are differents.
    - Strong passwords.
    - Auto-fill !
    - Doesn't require brain activity
    - (Protections against Keyloggers (for existing and auto-fill passwords)) ?
    - "Softwareless" if using an addon.
    Disadvantage(s) :
    - A master password (which can be discovered)
    - Need an FF addon. Or a software. (Portable version available).
    - The "cloud" must be available. :lol:
  3. Using a local passwords manager.
    Keepass solution,
    Advantage(s) :
    - All pass are differents.
    - Strong passwords.
    - Doesn't require brain activity
    - (Protections against Keyloggers (for existing and auto-fill passwords)) ?
    Disadvantage(s) :
    - A master password (which can be discovered)
    - Need a software. (Portable version available).
    - No FF addon.
    - (No auto-fill !) ?
    - Always must have the database "on him" ?

PS: For all solutions, we can add an other layer of security like Keyscrambler...

What do you think guys ? Which solution do you prefer ? :D

Cheers.

++

Link to comment
Share on other sites


  • Replies 3
  • Views 1.5k
  • Created
  • Last Reply

Brain and memory with 0 storage.. I think the only way then would be to be infected.. or some sort of man in the middle attack... and even then some sites can be hacked anyway... so even with all of the protection... it may still happen.. ( kinda complete crap ) but just my take.. Weary of applications which use your password.. and have possible reporting or vulnerabilities in their design...

EDIT: For my passwords I always generate using a password with is considered 'Strong'.. Then I encrypt it.. and the output of that encryption is used as the password.. If I can't remember it I then encrypt it a second time in a document which is compressed and encrypted.. ( which could be busted open.. ) but very few people can decrypt the output..

I don't even know if its safer or better... but it always made me feel better.. meaningless logons and accounts, I never do this for but use a 'Strong' password and I am not shy about changing it.. ( good thing I have brain cells left )... But none of these would be connected to credit cards or anything... and only very few accounts I have made do I consider making these Stronger passwords for..

Link to comment
Share on other sites


Thanks for these informations.

Maybe only the brain is the solution...

I'll think about this.

Other suggestions ?

++

Link to comment
Share on other sites


Archived

This topic is now archived and is closed to further replies.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...