Reply to post: Changing Passwords is NOT good practice

SQL Server admins warned about Fargo ransomware

richardcox13

Changing Passwords is NOT good practice

and change them periodically to protect the database server from brute force attacks and dictionary attacks, which any IT pro worth their name will have been doing already

This goes against best practice, and only helps if your password later appears in password lists: which is won't if it was good enough in the first place (20+ chards from random password generator) and not reuse.

Just repeating this bad advice makes me question the source.

NCSC: https://www.ncsc.gov.uk/blog-post/problems-forcing-regular-password-expiry

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon