• 0 Posts
  • 25 Comments
Joined 2 months ago
cake
Cake day: August 4th, 2024

help-circle
















  • I work at a university IT department. It’s been a struggle with our auditors to loosen up the password expiration requirements. At least with the students they let anyone with 2FA to go without password expiration, which acts as a nice little carrot-and-stick. But for staff it’s two years (2FA always required), regardless of password quality. I’d rather be able to base password expiration on password quality, personality.


  • LessPass and similar software has some problems. Things like you can’t simply change your master password, you must then recompute and change every site. It’s also not strictly stateless, since you need to know which password iteration you’re on and the user name. Full fledged password managers also typically provide other secret management features, like API keys, SSH keys, credit/debit cards, and identity cards.



  • Okay, what requires more assumptions:

    Biden goes along with a hair brained Trump era plan with a nebulous link to the Trump administration. News media sources have found no link to any official agency, but fortunately we have social media to discover a link (based on nothing). Biden then goes on to prosecute the perpetrators for weapons smuggling. None of the perpetrators complains about a deal being broken.

    OR

    This only had links to political figures in the Trump administration, but not anyone in the intelligence services. Those figures are long gone. No one bothered to tell Biden on the way out the door. Biden is prosecuting the perpetrators of an operation he allowed for fun and they’re happy to stay quiet while they get imprisoned for running weapons.