Reply to post: Re: Unique Passwords

Microsoft: You NEED bad passwords and should re-use them a lot

Neil Barnes Silver badge

Re: Unique Passwords

I just had to change my eBay password.

Which required me to get a token from my disposable email.

Which required me to change that email password.

Which sent the 'click here' to a different email.

And having got back through the tracks to eBay, it refused to allow my new password on the grounds that certain non-alpha characters, with which it had been perfectly happy before, were no longer allowed...

I don't understand why password systems *insist* on capitals, numbers, non-alphas, etc instead of just *allowing* them - it reduces the possibilities, I think (ok, has to be eight characters, has to have a number, haven't had a number yet...) though perhaps not as severely as not allowing particular characters in the password. One credential checker refused to accept my place of birth - required - because two of the characters in it are adjacent on the keyboard. Ridiculous.

Or is there something subtle with input sanitisation that I don't understand, and it's the little Bobby Tables problem all over again?

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon