Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It's not just Microsoft, I believe NIST has the same guidelines now.

Forcing people to constantly change passwords just means they either iterate a number or write them down. It also means they start to resent the tech and people who make them do it. It helps no one.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: