nanog mailing list archives

Re: Password safes &c. (was: Dear Linkedin,)


From: Andrew Sullivan <asullivan () dyn com>
Date: Fri, 8 Jun 2012 17:07:40 -0400

On Fri, Jun 08, 2012 at 05:00:14PM -0400, Tyler Haske wrote:
KeePass, KeyPassDroid and Dropbox.

Yes, of course, I'll just upload all my passwords to a place totally
under the control of someone (well, actually, _two_ other ones) else,
and then pray that there never turns out to be a nasty attack against
the programs and algorithms I used.  (I'm more concerned about the
programs.  Obviously, if SHA-2 or whatever breaks, we gots bigger
problems than all my personal passwords.)

I'm not trying to be dismissive.  Those are excellent stopgap
measures.  They're not a solution.

Best,

A

-- 
Andrew Sullivan
Dyn Labs
asullivan () dyn com


Current thread: