[Coco] Mystic BBS

Gene Heskett gheskett at shentel.net
Sun Sep 29 18:26:56 EDT 2019


On Sunday 29 September 2019 16:51:50 Jeff Teunissen wrote:

> Your password requirements are really terrible.
>
> "7 characters, 1 capital letter, 3 numbers, 1 symbol" is a very
> insecure password scheme. It's bad enough that most people will write
> it down rather than try to remember a password that matches it --
> while simultaneously being very easy for a computer to guess. It's the
> opposite of a good password scheme, that being one that a person can
> memorize easily while being hard to guess.
>
> I killed the new user session, it just wasn't worth completing.
>
While I disagree with Jeffs way of complaining, I agree with his 
complaint. John the ripper, a linux password cracker can probably find 
that simple a pw in less than a minute.  Open that up to at least 80 
chars, specify the legal chars you can use but don't demand them, 
because everytime you restrict, it takes one character out of the try 
pool for a potential cracker.  Use a whole phrase of easy to remember 
words that are NOT related to each other, but because its whole words, 
its much easier for you to remember without ever writing it down.

I would think we've been hacked enough times over the last 35 years to 
get a clue. Every character you add is a mathematical factor increment 
for the crackers to have to try. One of the better calculators ever 
built by TI overflows its 12 digit + exponent math when you enter 70!, 
but can handle 69!  The answer for 69! is quite a few times the age of 
the universe in seconds. Make 'em work for it and they'll quickly get 
bored and go away, looking for easier pickings.

> On Sat, Sep 28, 2019 at 11:54 AM phil pt <ptaylor2446 at gmail.com> wrote:
> > Hello
> >
> > The ftp on port 2021 and telnet 2025 should be working. You will
> > have to register first before you can use the ftp server.
> >
> > Web http://mystic.dynu.net On port 80
> > Telnet  Mysticdynu.net 2025
> >
> > Phil Taylor
> >
> > On Sun, Sep 22, 2019 at 10:10 AM Charles Allison via Coco <
> >
> > coco at maltedmedia.com> wrote:
> > > Robert,
> > >
> > > Note the ports are for two different protocols. ftp and telnet.
> > > Http will generate the default page on apache!
> > >
> > > Try using an ftp app on port 2021 and telnet on port 2025.
> > >
> > > happy file finding!
> > >
> > > Chuck Allison
> > >
> > > Sent from my iPhone
> > >
> > >
> > > --
> > > Coco mailing list
> > > Coco at maltedmedia.com
> > > https://pairlist5.pair.net/mailman/listinfo/coco
> >
> > --
> > Coco mailing list
> > Coco at maltedmedia.com
> > https://pairlist5.pair.net/mailman/listinfo/coco


Cheers, Gene Heskett
-- 
"There are four boxes to be used in defense of liberty:
 soap, ballot, jury, and ammo. Please use in that order."
-Ed Howdershelt (Author)
If we desire respect for the law, we must first make the law respectable.
 - Louis D. Brandeis
Genes Web page <http://geneslinuxbox.net:6309/gene>


More information about the Coco mailing list