Home >

Stupid Password Policies

23. November 2009

In last few weeks, I have suffered from stupid imagepassword policies. One of them was a bank.

They have strange password policies, they require numbers, capital letter and a small letter in the password, and they limit their password to be 6 chars long.

The other one is for ETS GRE. Recently, they opened up a new web site through which you can learn your GRE scores and order test score submission. Once again, I forgot my password. This time, I tried the “Forgotten password” option and appearently, they failed providing a reliable system here. I entered everything right, and came to password change screen. When I submitted, I got “technical error occured”. After 3rd or 4th time, it now says “account locked”. Now I have to make international phone calls to order my GRE scores.

I just don’t remember this kind of passwords that have silly requirements. I had a password in mind that I use for my mail which is around 30 chars long, and it is strong enough for me. If I need to ensure security, i specialize them in a way that i remember. I don’t need your stupid policies to ensure my security. If you want your inexperienced users to have secure password, that is fine, but please don’t restrict me or have a reliable forgotten password system..

Comments

11/23/2009 11:22:35 AM #
I have seen what these "secure" password policies lead to: users use yellow sticky notes ON THE MONITOR to remember the ever changing and complex password.
12/3/2009 2:03:47 AM #
GRE Epic Fail

GRE Epic Fail
Waseem
Waseem
1/9/2010 6:02:16 PM #
okay the solution , i have the exact same problem ,
the problem they did not say that after trying the account will be locked ,and i used the right password just there sysetm is stupid and locked my account???????????
1/9/2010 6:03:11 PM #
Yeah, i can believe it.
Comments are closed