[Coco] Mystic BBS
Gene Heskett
gheskett at shentel.net
Sun Sep 29 18:26:56 EDT 2019
On Sunday 29 September 2019 16:51:50 Jeff Teunissen wrote:
> Your password requirements are really terrible.
>
> "7 characters, 1 capital letter, 3 numbers, 1 symbol" is a very
> insecure password scheme. It's bad enough that most people will write
> it down rather than try to remember a password that matches it --
> while simultaneously being very easy for a computer to guess. It's the
> opposite of a good password scheme, that being one that a person can
> memorize easily while being hard to guess.
>
> I killed the new user session, it just wasn't worth completing.
>
While I disagree with Jeffs way of complaining, I agree with his
complaint. John the ripper, a linux password cracker can probably find
that simple a pw in less than a minute. Open that up to at least 80
chars, specify the legal chars you can use but don't demand them,
because everytime you restrict, it takes one character out of the try
pool for a potential cracker. Use a whole phrase of easy to remember
words that are NOT related to each other, but because its whole words,
its much easier for you to remember without ever writing it down.
I would think we've been hacked enough times over the last 35 years to
get a clue. Every character you add is a mathematical factor increment
for the crackers to have to try. One of the better calculators ever
built by TI overflows its 12 digit + exponent math when you enter 70!,
but can handle 69! The answer for 69! is quite a few times the age of
the universe in seconds. Make 'em work for it and they'll quickly get
bored and go away, looking for easier pickings.
> On Sat, Sep 28, 2019 at 11:54 AM phil pt <ptaylor2446 at gmail.com> wrote:
> > Hello
> >
> > The ftp on port 2021 and telnet 2025 should be working. You will
> > have to register first before you can use the ftp server.
> >
> > Web http://mystic.dynu.net On port 80
> > Telnet Mysticdynu.net 2025
> >
> > Phil Taylor
> >
> > On Sun, Sep 22, 2019 at 10:10 AM Charles Allison via Coco <
> >
> > coco at maltedmedia.com> wrote:
> > > Robert,
> > >
> > > Note the ports are for two different protocols. ftp and telnet.
> > > Http will generate the default page on apache!
> > >
> > > Try using an ftp app on port 2021 and telnet on port 2025.
> > >
> > > happy file finding!
> > >
> > > Chuck Allison
> > >
> > > Sent from my iPhone
> > >
> > >
> > > --
> > > Coco mailing list
> > > Coco at maltedmedia.com
> > > https://pairlist5.pair.net/mailman/listinfo/coco
> >
> > --
> > Coco mailing list
> > Coco at maltedmedia.com
> > https://pairlist5.pair.net/mailman/listinfo/coco
Cheers, Gene Heskett
--
"There are four boxes to be used in defense of liberty:
soap, ballot, jury, and ammo. Please use in that order."
-Ed Howdershelt (Author)
If we desire respect for the law, we must first make the law respectable.
- Louis D. Brandeis
Genes Web page <http://geneslinuxbox.net:6309/gene>
More information about the Coco
mailing list