Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 15 Jun 2013 22:54:15 +0200
From:      Remko Lodder <remko@freebsd.org>
To:        Eitan Adler <eadler@freebsd.org>
Cc:        svn-ports-head@freebsd.org, svn-ports-all@freebsd.org, Ruslan Makhmatkhanov <rm@freebsd.org>, ports-committers@freebsd.org
Subject:   Re: svn commit: r320986 - in head/finance: . electrum electrum/files
Message-ID:  <E59047E5-9E9B-48A7-B37B-8FCA2AF05438@freebsd.org>
In-Reply-To: <CAF6rxg=twZJWrV7VQXXVSSsZ6wfc_K2minCyt89WTFKmon=fOQ@mail.gmail.com>
References:  <201306151129.r5FBTA3l047548@svn.freebsd.org> <8D79057B-B15A-41E4-A007-1B75CC41CF5E@FreeBSD.org> <CAF6rxg=twZJWrV7VQXXVSSsZ6wfc_K2minCyt89WTFKmon=fOQ@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help

On Jun 15, 2013, at 10:19 PM, Eitan Adler <eadler@freebsd.org> wrote:

> On Sat, Jun 15, 2013 at 9:38 PM, Remko Lodder <remko@freebsd.org> =
wrote:
>>=20
>> On Jun 15, 2013, at 1:29 PM, Ruslan Makhmatkhanov <rm@FreeBSD.org> =
wrote:
>>=20
>>> Author: rm
>>> Date: Sat Jun 15 11:29:10 2013
>>> New Revision: 320986
>>> URL: http://svnweb.freebsd.org/changeset/ports/320986
>>>=20
>>> Log:
>>> Electrum is an easy to use Bitcoin client. It protects you from
>>> losing coins in a backup mistake or computer failure, because your
>>> wallet can be recovered from a secret phrase that you can write on
>>> paper or learn by heart. There is no waiting time when you start
>>=20
>>=20
>> It's ofcourse bad practise to write down your passphrase! Please do =
not
>> advertise that kind of behaviour.
>=20
> I disagree with this:  storing a longer, more random passphrase in
> one's wallet is far better than picking a short memorable passphrase

Sure, till it's stolen and then it's as worthless as a simple password =
like 1234.
But you mean something that might be used to get your =
password/passphrase
instead of being the actual password/passphrase.

>=20
> We should be encouraging more use of password managers and/or writing
> down of passwords.

I can see the password manager point there. I disagree with writing down =
passwords
as is.

>=20
> Others who agree:
>=20
> =
http://news.cnet.com/Microsoft-security-guru-Jot-down-your-passwords/2100-=
7355_3-5716590.html
> Bruce Schneier
> Per Thorsheim.
> Sean Sullivan from F-Secure
>=20
> I'm sure I could find more names.  These are from my last conversation
> on the subject.

Ofcourse the opposite can also be found. It's not a contest about who =
knows most people who argue
that something is or is not true.

Not all people are aware of what is good practise, so we should be =
cautious with these kind of
'advises', because it will result to ill advise. Yes we are not =
responsible for what people do with
the software products, but we shouldn't just say 'write down your =
password' either.

p.s. I do not feel like discussing this more with you, this is my one =
and only reply to this thread after
your reply.

--=20
/"\   With kind regards,			| remko@elvandar.org
\ /   Remko Lodder			| remko@FreeBSD.org
X    FreeBSD					| =
http://www.evilcoder.org
/ \   The Power to Serve		| Quis custodiet ipsos custodes




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?E59047E5-9E9B-48A7-B37B-8FCA2AF05438>