On Thu, 2022-07-28 at 12:40 +0930, Tim via users wrote: > On Wed, 2022-07-27 at 21:11 -0300, George N. White III wrote: > > There have been some useful studies comparing different password > > policies. Very long plain text passphrases without time limits > > are > > now recommended over shorter passwords that expire every month or > > two. > > About time! > > > I have two-factor authentication enabled wherever it is available, > > and have been told that real-two factor auth is coming for my bank. > > What I've seen of some of those TFA, is making it easier for > criminals. > Steal someone's phone, contact a service and say they need to reset a > password, the stolen phone gives them an automatic bypass of > security. I have a hardware token for one bank, and a card reader for another. poc _______________________________________________ users mailing list -- users@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to users-leave@xxxxxxxxxxxxxxxxxxxxxxx Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/users@xxxxxxxxxxxxxxxxxxxxxxx Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure