Closed Bug 1037925 Opened 10 years ago Closed 10 years ago

Enforce password restrictions on login

Categories

(Bugzilla :: User Accounts, enhancement)

enhancement
Not set
normal

Tracking

()

RESOLVED DUPLICATE of bug 1009013

People

(Reporter: mail, Unassigned)

References

Details

Attachments

(1 file, 1 obsolete file)

Attached patch password-v1.patch (obsolete) — Splinter Review
Currently we only check the minimum length of passwords when a user logins. After this change, we check both length and complexity of a password. This is optional, but is enabled by default.

The issue that brc has is that users tend to have 'bad' passwords, and we want to enforce 'good' passwords.
Attachment #8454973 - Flags: review?(dkl)
With two typo fixes identified by the brc review of the code.
Attachment #8454973 - Attachment is obsolete: true
Attachment #8454973 - Flags: review?(dkl)
Attachment #8455115 - Flags: review?(dkl)
Dupe of bug 1009013!
Slight difference is that mine applies to all services, and glob's applies only to web logins. I tend to think glob's solution is better. The use case at brc is to get rid of people who currently have incredibly easy to hack passwords.
Status: ASSIGNED → RESOLVED
Closed: 10 years ago
Resolution: --- → DUPLICATE
Attachment #8455115 - Flags: review?(dkl)
Assignee: sgreen → user-accounts
Target Milestone: Bugzilla 5.0 → ---
You need to log in before you can comment on or make changes to this bug.

Attachment

General

Creator:
Created:
Updated:
Size: