Write Down Your Password (from: Alex Feldstein)

Bruce Schneier comments on an article about Microsoft’s Jesper Johansson (a security expert):

Microsoft’s Jesper Johansson urged people to write down their passwords.

This is good advice, and I’ve been saying it for years.

Simply, people can no longer remember passwords good enough toreliably defend against dictionary attacks, and are much more secure ifthey choose a password too complicated to remember and then write itdown. We’re all good at securing small pieces of paper. I recommendthat people write their passwords down on a small piece of paper, andkeep it with their other valuable small pieces of paper: in theirwallet.

I maintain a collection of passwords in a master encrypted file. Theonly password I should not forget is the key to that file. For average(i.e. non-admin) users, writing it down in a secure place is a goodidea.

Note: I met Jesper Johansson in a Microsoft conference in 2003. Very smart guy indeed!

Link to Schneier’s article
Link to Johansson’s article

Comments are closed.