limit of 16 characters for passwords is too restrictive and doesn't allow very strong passwords

VERIFIED INVALID

Status

()

Bugzilla
User Accounts
--
enhancement
VERIFIED INVALID
6 years ago
6 years ago

People

(Reporter: Gerhard Burger, Unassigned)

Tracking

Details

(Reporter)

Description

6 years ago
User-Agent:       Mozilla/5.0 (X11; Linux i686; rv:2.0.1) Gecko/20100101 Firefox/4.0.1
Build Identifier: 

If you use strong site specific passwords (eg based on http://nuttinlogs.com/post/4300704251/creating-strong-and-unique-passwords) you run the risk that your password is longer than 16 characters and can't be used in bugzilla. Please allow longer passwords!

Reproducible: Always
Where do you see this 16-char limit for our passwords? I can't see that we set any limits (other than minimum of 6-chars) on our password input fields and we hash the everything we got to the DB.

Please, feel free to reopen if you find a place we enforce this limit. Thanks!
Status: UNCONFIRMED → RESOLVED
Last Resolved: 6 years ago
Resolution: --- → WORKSFORME

Comment 2

6 years ago
The article doesn't mention Bugzilla at all. That's unrelated.
Resolution: WORKSFORME → INVALID
(Reporter)

Comment 3

6 years ago
Sorry, it happened to me on https://bugzilla.gnome.org/ and I mistakenly taught it to be a bug in bugzilla.
Status: RESOLVED → VERIFIED
You need to log in before you can comment on or make changes to this bug.