I just logged into DigitalPoint and was greeted with a message I've never seen on here before - "You password is 181 days old and has expired." Maybe it's just a personal pet peeve, but I don't understand why forums and small sites sometimes require password changes. I have enough trouble remembering all of my "important" passwords. Yes, sure, I wrote it down, but I still think its an unnecessary inconvenience. If it were my online banking - or something with lots of personal information - I'd understand. But, c'mon guys... it's just an online forum. I'm done venting. And I do appreciate all I take away from my conversations at DP. There are good people here. Thanks to the webmasters, admins, and moderators who make it all happen.
Not sure about you but still for so many users this forum is important so this is the right move by admin IMO. DON.
It not a small forum and well worth a little bit of hassle changing your password a couple of times a year. Thanks Brian
It's good practice to change your password regularly. Not only this, but it helps to keep your account more secure. Not only this, but it helps reduce the number of people with hacked accounts, and reduces workload for the staff
Yes, you should actually change it more often, but they require a change every 180 days for security reasons.
did you know you can enter the same password that you have. it takes you 2 seconds to enter your password and then your back to reading pointless threads.
changing passwords is not needed, as long as you know that only you know your password and you are safe from trojans and keylogging programs.
Many studies have found that frequent forced password changes do not lead to more security! They force users to make easier to remember passwords, instead of memorizing a strong password. For example: http://www.cerias.purdue.edu/site/blog/post/password-change-myths/ The best protection is to prevent your strong password from being stolen in the first place.
LOL One of my pet peeves as well since I take great care of my password, it's annoying how I have to change it & instead, open the possibility of forgetting what I changed it with. Extra hassle having to recover it through e-amil, or try 5 wrong passwords & be stuck not being able to log in for a while, some inconveniences I would rather skip. But then, eh, it's a big forum, I understand why we have to do it.
There once was a file.. The file, once born, was given the name.. "greatness.txt" In his life, he was given very sensitive information, because he was very trusted. And it was well placed trust, as he kept loyal, and learned the art of encryption. Through his life, he noticed that Notepad didn't allow enough undoing, and he was lucky enough to not lose much because of not using Wordpad or Notepad++. As he grew, he began to ask "what are these passwords to?" and he was shown the internet. Then he Googled, "Random Password Generator", and told his master that so long as he was being used to copy+paste passwords, they may as well be very secure. The master then came to DigitalPoint and passed on what he had learned from the wise file...
I was just about to start a thread with this same topic. Forcing users to change passwords is a little ridiculous. Sure, security is important, but it should always be up to the user what password he or she uses. Forcing users to change passwords more frequently than they would like will force them to write their passwords down, put them into plain text files, or use other insecure methods to remember their passwords. Most of the people on this forum are technologically literate and do not need to be babied and forced to change their passwords. Why not just use a password strength meter for the site? Or, just remind users they should change passwords every 180 days, but do no require it. P.S. I tried entering my same password but was told I could not do that. Now, I have all my other passwords secured in my head while my DP password sits plainly on a post-it next to my computer for all to see.