Last week, I tried to register for a service and was really surprised by a password limit of 16 characters. Why on earth yould you impose such strict limits? Never heard of correct horse battery staple?

  • x0x7@lemmy.world
    link
    fedilink
    arrow-up
    1
    ·
    7 months ago

    How to properly set password requirements on your website. Accept any utf8 string. Have a nice day.

    • tiredofsametab@fedia.io
      link
      fedilink
      arrow-up
      0
      arrow-down
      1
      ·
      7 months ago

      It’s all fun and games until someone realizes they can just create lots of accounts with large passwords and fill your space.

      • Jade@programming.dev
        link
        fedilink
        arrow-up
        1
        ·
        7 months ago

        Not a problem because passwords are hashed, which means they take up a fixed size, and you should have form upload size limits anyway.

        • tiredofsametab@fedia.io
          link
          fedilink
          arrow-up
          0
          ·
          7 months ago

          hashed, which means they take up a fixed size

          One would hope so anyway,

          you should have form upload size limits

          The above conflicts directly with OP’s Accept any utf8 string

  • lseif@sopuli.xyz
    link
    fedilink
    arrow-up
    0
    ·
    7 months ago

    worst i’ve seen is 8 characters. precisely 8 characters, no more no less… it was for a bank …

    • Dwemthy (he/him)@lemdro.id
      link
      fedilink
      English
      arrow-up
      0
      ·
      7 months ago

      A major US bank that I used to use has case insensitive passwords, found that out one day when I noticed caps lock was on after logging in with no trouble

      • viking@infosec.pub
        link
        fedilink
        arrow-up
        1
        ·
        7 months ago

        Makes you wonder if they store the password in plain text, or convert to lower key during your first input so it’s at least hashed. I wouldn’t be surprised if it’s not.