 




<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Password Policy effects on Admins</title>
	<atom:link href="http://itknowledgeexchange.techtarget.com/itanswers/password-policy-effects-on-admins/feed/" rel="self" type="application/rss+xml" />
	<link>http://itknowledgeexchange.techtarget.com/itanswers/password-policy-effects-on-admins/</link>
	<description></description>
	<lastBuildDate>Tue, 21 May 2013 10:51:34 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
	<item>
		<title>By: secgeek</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/password-policy-effects-on-admins/#comment-37325</link>
		<dc:creator>secgeek</dc:creator>
		<pubDate>Thu, 07 Apr 2005 11:59:19 +0000</pubDate>
		<guid isPermaLink="false">#comment-37325</guid>
		<description><![CDATA[I just want to apologize for the tone of the first reply I sent. I feel very strongly that all administration ID&#039;s and functions should be audited and secured in a way that it can be independently proven that those ID&#039;s were not used in a crime. I take Security very seriously and sometimes it show.
Peace]]></description>
		<content:encoded><![CDATA[<p>I just want to apologize for the tone of the first reply I sent. I feel very strongly that all administration ID&#8217;s and functions should be audited and secured in a way that it can be independently proven that those ID&#8217;s were not used in a crime. I take Security very seriously and sometimes it show.<br />
Peace</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: jimcusson</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/password-policy-effects-on-admins/#comment-37326</link>
		<dc:creator>jimcusson</dc:creator>
		<pubDate>Wed, 06 Apr 2005 10:15:25 +0000</pubDate>
		<guid isPermaLink="false">#comment-37326</guid>
		<description><![CDATA[Keep the complexity but use it to create easier to remember passwords.  As someone else said, use passphrases.
el2g2tm! is easy to remember when it translates into Everybody Loves 2 Go 2 The Movies!  The auditors will love the &quot;strong&quot; password, it&#039;s 8 characters and uses both numbers and specail characters.  For the user, it&#039;s easy to remember.]]></description>
		<content:encoded><![CDATA[<p>Keep the complexity but use it to create easier to remember passwords.  As someone else said, use passphrases.<br />
el2g2tm! is easy to remember when it translates into Everybody Loves 2 Go 2 The Movies!  The auditors will love the &#8220;strong&#8221; password, it&#8217;s 8 characters and uses both numbers and specail characters.  For the user, it&#8217;s easy to remember.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: secgeek</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/password-policy-effects-on-admins/#comment-37327</link>
		<dc:creator>secgeek</dc:creator>
		<pubDate>Wed, 06 Apr 2005 09:21:47 +0000</pubDate>
		<guid isPermaLink="false">#comment-37327</guid>
		<description><![CDATA[This gets to the heart of why most people that call themselves security aren&#039;t. They are in fact an ethical embarrassment to the profession of Security officer. The thought that the law doesn?t apply to the sheriff is unconscionable and the true reason that Microsoft has never designed a good security system.  

Administrative ID?s should be changed more often than regular users and should be held to higher password standards than regular users. Please don?t ever embarrass the title of Security with such questions ever again.

Peace 
 ]]></description>
		<content:encoded><![CDATA[<p>This gets to the heart of why most people that call themselves security aren&#8217;t. They are in fact an ethical embarrassment to the profession of Security officer. The thought that the law doesn?t apply to the sheriff is unconscionable and the true reason that Microsoft has never designed a good security system.  </p>
<p>Administrative ID?s should be changed more often than regular users and should be held to higher password standards than regular users. Please don?t ever embarrass the title of Security with such questions ever again.</p>
<p>Peace </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: msitsec</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/password-policy-effects-on-admins/#comment-37328</link>
		<dc:creator>msitsec</dc:creator>
		<pubDate>Wed, 06 Apr 2005 08:37:17 +0000</pubDate>
		<guid isPermaLink="false">#comment-37328</guid>
		<description><![CDATA[And don&#039;t forget what the auditors will have to say about it. Not only is security first and formost on our minds, but now there is the big &#039;C&#039; Compliance]]></description>
		<content:encoded><![CDATA[<p>And don&#8217;t forget what the auditors will have to say about it. Not only is security first and formost on our minds, but now there is the big &#8216;C&#8217; Compliance</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: stuffedmoose</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/password-policy-effects-on-admins/#comment-37329</link>
		<dc:creator>stuffedmoose</dc:creator>
		<pubDate>Wed, 06 Apr 2005 07:46:30 +0000</pubDate>
		<guid isPermaLink="false">#comment-37329</guid>
		<description><![CDATA[The idea here is &quot;security&quot;.  Shorter simpler passwords means you are more vulnerable.  No, the complexity restriction cannot be by-passed and it shouldn&#039;t be.  If you can think up a shorter easier password, so can a brute-force hacker.  Would you really want that to happen?  Probably not.]]></description>
		<content:encoded><![CDATA[<p>The idea here is &#8220;security&#8221;.  Shorter simpler passwords means you are more vulnerable.  No, the complexity restriction cannot be by-passed and it shouldn&#8217;t be.  If you can think up a shorter easier password, so can a brute-force hacker.  Would you really want that to happen?  Probably not.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: shawnharbert</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/password-policy-effects-on-admins/#comment-37330</link>
		<dc:creator>shawnharbert</dc:creator>
		<pubDate>Tue, 05 Apr 2005 18:48:21 +0000</pubDate>
		<guid isPermaLink="false">#comment-37330</guid>
		<description><![CDATA[Password policies are Domain specific and apply to ALL users within that domain.  If you want to make an easier password policy for your admins, then I suggest you use Pass Phrases and NOT shorten or make simpler the passwords to accounts that hold the &quot;keys&quot; to your network.  However, if you&#039;re really stuck on wanting simpler passwords, stand up another domain in your Forest, move all of your admins to that domain, and manage the original domain with accounts from your new domain (this is NOT the suggested alternative!).]]></description>
		<content:encoded><![CDATA[<p>Password policies are Domain specific and apply to ALL users within that domain.  If you want to make an easier password policy for your admins, then I suggest you use Pass Phrases and NOT shorten or make simpler the passwords to accounts that hold the &#8220;keys&#8221; to your network.  However, if you&#8217;re really stuck on wanting simpler passwords, stand up another domain in your Forest, move all of your admins to that domain, and manage the original domain with accounts from your new domain (this is NOT the suggested alternative!).</p>
]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Page Caching using memcached
Database Caching 3/10 queries in 0.038 seconds using memcached
Object Caching 337/343 objects using memcached

Served from: itknowledgeexchange.techtarget.com @ 2013-05-21 11:03:59 -->