<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/css" href="/stylesheets/rss.css"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:trackback="http://madskills.com/public/xml/rss/module/trackback/">
  <channel>
    <title>Ellipsis: Tag stocks</title>
    <link>http://typo.pburkholder.com/articles/tag/stocks?tag=stocks</link>
    <language>en-us</language>
    <ttl>40</ttl>
    <description>...</description>
    <item>
      <title>Insane Password Policies</title>
      <description>&lt;p&gt;I can&amp;#8217;t just bookmark an email in &lt;a href="http://del.icio.us/pburkholder"&gt;del.icio.us&lt;/a&gt;, so I&amp;#8217;ll just have to quote this little gem from the &lt;a href="http://www.sage.org"&gt;&lt;span class="caps"&gt;SAGE&lt;/span&gt;&lt;/a&gt; list.&lt;/p&gt;


	&lt;p&gt;Theodore Tso writes&lt;/p&gt;


	&lt;blockquote&gt;
		&lt;p&gt; In another real world
  example, the security office set some obnoxious password policy that
  caused passwords to be impossible to remember, and then required
  changing said obnoxious passwords every 30 days.  But this was at a
  company where the traders were making bazillions of dollars every day,
  and rule #1 was &amp;#8220;thou should not piss off the traders, for they make
  your company rich and can go find a job with the competition&amp;#8221;.  So the
  company hired a set of runners who were given the traders&amp;#8217; passwords,
  and every morning before the traders came in, the runners would run
  around to all of the trading workstations and log in the traders so
  they wouldn&amp;#8217;t have to.&lt;/p&gt;
	&lt;/blockquote&gt;


	&lt;p&gt;Which elicited from Dan Geer, &amp;#8220;for the record, I can corroborate the above.&amp;#8221;&lt;/p&gt;</description>
      <pubDate>Mon, 22 Jan 2007 21:21:00 -0800</pubDate>
      <guid isPermaLink="false">urn:uuid:5acbf164-2418-4ebb-b1b7-81a79ca3e8d9</guid>
      <author>Peter Burkholder</author>
      <link>http://typo.pburkholder.com/articles/2007/01/22/insane-password-policies</link>
      <category>Security</category>
      <category>password</category>
      <category>security</category>
      <category>stocks</category>
    </item>
  </channel>
</rss>
