trash
fedilink
æjinei
link
fedilink
English
221Y

I tend to add them to my password manager, which funnily enough also has a recovery phrase which I just keep written down somewhere safe.

xkcd comic regarding your question of pass phrases vs passwords.

glibg10b
link
fedilink
English
2
edit-2
1Y

I generate mine with xkpasswd.net

Campa
creator
link
fedilink
English
11Y

deleted by creator

@d3Xt3r@lemmy.world
link
fedilink
English
31Y

Instead of * warden, just use the tried and trusted KeePass, no need to run your own server. KeePassXC is a nice open-source alternative client, and KeePassDX is it’s Android equivalent. You can keep your password file in sync with other devices by using your favorite cloud backup or sync tool. The best part is, KeePass supports auto-type, which *warden and other cloud-based password managers don’t. Auto-type is handy when you want to input your password into a program that’s not a web page, or you’re accessing something via remote desktop etc.

N3Cr0
link
fedilink
English
71Y

A passphrase is much longer than a password, and therefor provides more enthropy, even when it’s completely mnemonic.

You should store it in an encrypted database with a password manager. But you also have to secure this database - with either a password or passphrase. And do not forget about a 2nd factor, like a key which you have to store somewhere. Maybe encrypt that one, too.

No matter how many steps of security do have: There will be a master password/passphrase, and you shouldn’t write it down in clear text! So better find a way (some kind of secret algorithm, stored in your brain) to reproduce your master pass.

U+1F914 🤔
link
fedilink
English
2
edit-2
1Y

The security of a fully random password depends on the number of available symbols (alphabet) and the length.
The strength of the password is simply symbolcount^length.

For a conventional password the symbols/alphabet are characters, numbers and special characters.
For a mnemonic the symbols are simply full words and the “alphabet” is a list with a couple thousand words.

Mnemonic passwords are secure because of their large alphabet, and easy to remember because of the lower length (in symbols) and because human brains are good at coming up with associations (usually stories) for random words.
If you want to generate your own mnemonic password you can try diceware.
With diceware you roll a few dice to select random words from a list.

glibg10b
link
fedilink
English
11Y

Lemmy has superscripts. symbolcount^length^ produces symbolcountlength

Doesn’t show in vger.app

U+1F914 🤔
link
fedilink
English
11Y

deleted by creator

@Jat620DH27@lemmy.world
link
fedilink
English
3
edit-2
1Y

deleted by creator

Campa
creator
link
fedilink
English
2
edit-2
1Y

deleted by creator

@dhork@lemmy.world
link
fedilink
English
11Y

In the crypto world, it is a bit different. The words are chosen out of a pre-set dictionary of 2048 words, making each word the equivalent of an 11-bit number. Your 24-word mnemonic is actually an encoding of a 256-bit number, with some checksum bits at the end.

Create a post

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


  • 1 user online
  • 196 users / day
  • 589 users / week
  • 1.38K users / month
  • 4.49K users / 6 months
  • 1 subscriber
  • 7.41K Posts
  • 84.7K Comments
  • Modlog