12 September 2008

Passwords

How often should I change my password?

Best practice recommends that passwords must be changed every 120 days and they should not be reused. So how do you invent a password that meets this criteria and still remember it?

A pass phrase is a combination of a memorable word mixed with some numbers, for example, 1dIwtl&e - one day i'll win the lottery and escape.

Best practice is to create a password that has:
  • at least 8 characters
  • at least 1 lower case letter
  • at least 1 upper case letter
  • at least 1 number
  • at least 1 special character (?, *, %, etc)
Passwords must not:
  • be all or part of your account ID
  • be all or part of your account name
  • be blank
  • contain dictionary words
  • contain more than 2 repetitive characters (Mmmmmm1, Ab77777, etc)
  • contain substituted numbers and symbols for letters (3 for E, $ for S, etc)

No comments: