logoalt Hacker News

bartreadyesterday at 1:24 AM1 replyview on HN

It becomes tricky when all your passwords are randomly generated, 24 characters long, full of symbols, special characters, casing variations, etc. All of mine are an absolute nightmare to type manually.

I suppose that becomes a pretty strong argument for passphrases + MFA, because passphrases are much easier to type in manually. But the problem there is lots of services still have stupid/arbitrary maximum password length restrictions that make it difficult or impossible to use a sufficiently complex passphrase.

It’s very frustrating.


Replies

bigiainyesterday at 2:44 AM

You can generate "pronounceable" passwords in some tools.

1PW just generated this for me: mimp-rort-jan-mon-kain-sqin

Not as much entropy as 24 random letters/digit/punctuations/capitalisation. But (for me at least) much easier to read end type in situations where copy/paste isn't available (like from my phone to my dev docker containers)

show 2 replies