logoalt Hacker News

tedd4uyesterday at 1:06 AM1 replyview on HN

One could perhaps put those in a different vault. Sounds like a pain to me. But nothing compared to an email and/or banking compromise.


Replies

bartreadyesterday at 1:24 AM

It becomes tricky when all your passwords are randomly generated, 24 characters long, full of symbols, special characters, casing variations, etc. All of mine are an absolute nightmare to type manually.

I suppose that becomes a pretty strong argument for passphrases + MFA, because passphrases are much easier to type in manually. But the problem there is lots of services still have stupid/arbitrary maximum password length restrictions that make it difficult or impossible to use a sufficiently complex passphrase.

It’s very frustrating.

show 1 reply