• sonnenzeit@feddit.de
      link
      fedilink
      arrow-up
      25
      arrow-down
      1
      ·
      1 year ago

      It’s so annoying to have to discover the rules one rejected attempt at a time. Worse yet: sometimes you just get vague feedback a la “password contains illegal characters”. I usually let KeePassXC generate a safe password for me but in that case I then have to manually permutate the different character classes (numbers, letters, spaces, punctuation, etc) until I find the offender. No good.

      • stankmut@lemmy.world
        link
        fedilink
        English
        arrow-up
        28
        ·
        1 year ago

        Password must contain an uppercase letter.
        Password must contain a special character.
        Not that one.
        Not that one either.
        Nearly had it there! Too bad you only get 5 attempts. Account locked.

    • bradmont@lemmy.ca
      link
      fedilink
      arrow-up
      18
      arrow-down
      3
      ·
      1 year ago

      If they just showed the password on the login page, this would happen 100% less often to me.

      • Cethin@lemmy.zip
        link
        fedilink
        English
        arrow-up
        6
        ·
        edit-2
        1 year ago

        Use a password manager. The fact you use the same password on every site is very disturbing.

        KeepassXC (KeepassDX on android, I don’t know what I apple option is) is a good free open source option.

        • LifeInOregon@lemmy.world
          link
          fedilink
          arrow-up
          5
          ·
          1 year ago

          iOS and macOS have a built in password generator and storage system that are encrypted. It also works with passkeys. Surprisingly, there are people (even people I’ve explained this to) who don’t use it and continue to use a single password everywhere. ¯\_(ツ)_/¯

          • Cethin@lemmy.zip
            link
            fedilink
            English
            arrow-up
            1
            arrow-down
            1
            ·
            edit-2
            1 year ago

            Just use a password manager. It’s super easy to get started with it and you’ll only need to know one password, so make it a very good one. I’m certain yours could be brute forced, especially since I know it’s now Lemmy with a “.” somewhere, probably using words so throw a dictionary attack at it and it’s probably easy.

        • psud@lemmy.world
          link
          fedilink
          arrow-up
          1
          ·
          1 year ago

          It’s a shame KeePass doesn’t have a setting to generate an IBM mainframe password. Those rules are hard to implement in the standard set of settings

      • psud@lemmy.world
        link
        fedilink
        arrow-up
        1
        ·
        1 year ago

        I like $ and # as chars to put as the mandatory special when the requirements are hard to find