SysAdmin1138 @sysadmin1138@octodon.social
Follow

This does indeed say that forced password rotations are a bad idea and you shouldn't do them. It also says password composition rules are a bad idea, and you shouldn't use them.

Elsewhere they go into the reasoning on that. See Appendix A for the details of why the think this. User-factors!

· Web · 0 · 1