Free Republic
Browse · Search
News/Activism
Topics · Post Article

To: RayChuang88

I hedge everything I say with the phrase “properly-implemented.” That means no root CAs with 10+ year expiry, no intermediate CAs with greater than 2 year expiry, no encryption hashes under 1024-bit, symmetric key generation, 45 day password change requirements with >12-character, symalphanumeric (symbols, letters, and numbers) with no repeatability, mandatory two-factor authentication (what I have and what I know), and no local key generation (all keys generated on a non-Internet-connected machine).

I’m not saying that they can’t crack it all, ever, but the amount of effort required to read my personal documents, emails, browser history, and secure transactional databases is such that they will need a really good lead to think I’m even remotely worth the effort.

Essentially, I’m hedging against someone planting incriminating data on any of my devices in the event someone or entity wants to take me down. I’m prepared to die with my complex passwords.


19 posted on 09/08/2013 7:51:22 AM PDT by rarestia (It's time to water the Tree of Liberty.)
[ Post Reply | Private Reply | To 13 | View Replies ]


To: rarestia

“Complex passwords,” huh? Well, how’s this one?

|F.I.shOOtUinTheBuTTwithA12gaSlugthatmaykz.U.UhDuBBl€@zzHOl€!


39 posted on 09/08/2013 1:25:46 PM PDT by Nita Nupress ( Use your mind, not your emotions. Refuse to be manipulated by Marxists!)
[ Post Reply | Private Reply | To 19 | View Replies ]

Free Republic
Browse · Search
News/Activism
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson