|
|

10 Tips for Better Password Management
By Ericka Chickowski
2008-04-21
Article Views: 8316
Article Rating:    / 17
| Rate This Article: |
|
| Add This Article To: |
|
|
10 Tips for Better Password Management - Eight Through Ten (
Page 3 of 3 )
8. Never store passwords in cleartext.
Password storage should always be encrypted.
9. Synchronize passwords judiciously.
Password synchronization can make it easier on users by enabling them to use one or two passwords for a myriad of systems. But leveraging synchronization puts an organization at greater risk to a network attack if that password is compromised. Strong passwords are absolutely mandatory, and insecure systems that use little or no cryptography should not be included in password synchronization.
10. Take advantage of another form of authentication.
Selecting another method of authentication, such as biometrics, tokens and additional shared secrets, is a great way to augment the imperfect password system. Though these methods cost more, they are well worth it for high-risk systems. At the very least, taking advantage of shared secrets (such as a question-response system) can be a good way to automate a password-reset system to take the burden from the help desk.
| | Discuss 10 Tips for Better Password Management | | | | | | | Well written article. Yes, sticky notes should be banned as well as notes under the... | | | | | | Don't do this, make the users do that...none of which helps enlist the users in... | | | | | | Why not make password life depend on their security. If you insist on a short... | | | | | | I have spent much of my working life waiting for IT to reset my passwords, because... | | | | | | I agree, it is important to use passwords in the appropriate way, however, people... | | | | | | I agree completely. Insisting people must have nonsense PWs, that must not relate... | | | | | | Sorry for the apparent slam Ericka Chickowski but every one of the above posts are... | | | | | | Thank you, Dak. I work as a communicator in an IT department, and yours is a point... | | | | | | There are three levels of security and if it REALLY needs to be secure, we should... | | | | | | I've heard this ill advice over and over: Force users to come up with long, cryptic... | | | | | | One reason to change the password, even an awesome one, is in the event the password... | | | | | | Thank you! Thank you! Thank you!....
For NOT putting the content of this article... | | | | | | Passwords are a pain. Get over it! Unfortunately passwords are now of fact of... | | | | | | >>> Post your comment now! | | | | | |
|
 |
|
|
 |
 |
 |
| FEATURED CONTENT |
HP Resource Center
HP StorageWorks Scalable NAS is highly available, scalable network-attached storage for any industry solution. To learn how you can take full advantage of fault-tolerant NAS that seamlessly scales capacity and performance, visit: http://www.hp.com/go/scalablenas
Go Now!
|
|
Sponsored by
| |
|
| DOWNLOADABLE ROI CALCULATORS & TOOLS FROM BASELINE |
Calculate Cost and ROI of Spam, VOIP, RFID, Sarbanes-Oxley and more...
Featured Calculators:
See More Tools!
By Category| Planners |Calculators | Quizzes
|
| | |
|
|