On TV.com: LADY GAGA Photos
BNET Business Network:
BNET
TechRepublic
ZDNet
TalkBack 2 of 3:
Next »
« Previous
Please, please
Will someone stop the madness? What is the point of providing a single point of failure?

Sure, a token-based system makes remembering passwords simple - presumably you remember a PIN and the token does the rest - but once breeched all my token-based systems are breeched. I have worked with challenge/response type systems for years, they are simply not needed. Just lock users out after 3 to 5 password failures, then make them contact a help desk to get their password reinstated. Then make sure your helpdesk password recovery systems are robust and secure. That's it - problem solved!

How many of the recent security issues in Windows, Linux, Mac OS, etc. were based on faulty password or user authentification? None!. User authentification is not the problem!
Posted by: Fred Fredrickson   Posted on: 02/25/04 You are currently: a Guest | Members login | Terms of Use

Alert moderator to an offensive message

Subscribe to this discussion via Email or RSS

As long as I can opt out  Eggs Ackley_z | 02/24/04
Please, please  Fred Fredrickson | 02/25/04
take your id card and shove it  FilledOut | 02/26/04

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement
advertisement

SmartPlanet

Click Here