increase default password length validation to minimum 12 characters#5685
increase default password length validation to minimum 12 characters#5685gregmolnar wants to merge 1 commit intoheartcombo:mainfrom
Conversation
|
I like this change. It's simple and increases the security for default installations. I expect all developers to already use password managers that generate passwords that are mostly longer than 20chars. So this is only helping people to choose a more secure password not already using a password manager. We need to remember that there are a lot of people not using a password manager, which would really use 6 chars long passwords when possible. |
|
@gregmolnar @salzig Can I say that I agree with both of you on this. |
kykyi
left a comment
There was a problem hiding this comment.
Not a maintainer but want to show my support 😄
|
I just realized that this would be a breaking change, so I will rework it. Ideally when a password is updated the new length would be required, I will look into how to make that happen. |
|
And just like that he almost broke the entire rails based internet 😂😂😂 |
Wouldn't be the first time, nor the last time :) |
|
@gregmolnar i start to have the Impression that no one is merging anything here TBH |
|
I changed this to set the new minimum length for newly generated configs. Let's see it maintenance picks up and then I will work on rolling this out on password updates too. |
No description provided.