how about a password strength tester and redoing the profile so that it is like IPB's?
first, the password tester: IPB (and certain phpbb-based CMSs, especially nuke-evolution) have a password-strength tester. Depending on what you put in, the ajax tester will display the strength of it.
It serves no "real" purpose, but it looks nice and helps new people figure out how to make strong passwords.
second, the profile: I'm not sure if anyone's mentioned it, but a more detailed profile would be nice (though not to the extent of the PCP - IMO that's too much).
Look at IPB for inspiration.
Another idea, how about having a "users who visited today" area.
Anyway, this is all just stuff from IPB that I really like.
Password tester?
Forum rules
Discuss features as they are added to the new version. Give us your feedback. Don't post bug reports, feature requests, support questions or suggestions here. Feature requests are closed.
Discuss features as they are added to the new version. Give us your feedback. Don't post bug reports, feature requests, support questions or suggestions here. Feature requests are closed.
- DigitalShadow
- Registered User
- Posts: 72
- Joined: Wed Mar 01, 2006 12:13 pm
- Location: Germany
- Contact:
Re: Password tester?
i don't think that anyone would want to have phpBB like IPB, even the idea of that password tester is nice. but i doubt that anyone would make much use of it even if it showed that your password is insecure.
well, as far as i knwo you can add details to the profile through the acp. so no need for the devs to change anything. more detail is up to you.
well, as far as i knwo you can add details to the profile through the acp. so no need for the devs to change anything. more detail is up to you.
((perfect timing-_-, i wasnt able to log in this weekend cuz Dad thinks this site is bad and that your all the spawn of Satan....hmm go figure^_^))
- Lastof
- Registered User
- Posts: 518
- Joined: Wed Mar 17, 2004 8:10 pm
- Location: Two weeks last wednesday
Re: Password tester?
I hate password testers. They are unhelpful, and as far as I can tell, the most use that ever do is scare users, rather than get them to change their passwords.
Oh, and if someone could tell me how in the name of all things good hotmail thought that my 12 character password, containing upper and lower cases, as well as numbers, was only moderate security. What does it expect me to do, memorise somthing 128 characters long, and change it every time I log in?
Oh, and if someone could tell me how in the name of all things good hotmail thought that my 12 character password, containing upper and lower cases, as well as numbers, was only moderate security. What does it expect me to do, memorise somthing 128 characters long, and change it every time I log in?
Last edited by Lastof on 04 May 2008, 00:00, edited -1 times in total
------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
Look, I'm officially not a bug!!
SHS`: "Oooh Bertie, spank me with that casing stick, spank me spank me spaaaaannnnk mee!"

------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
Look, I'm officially not a bug!!
SHS`: "Oooh Bertie, spank me with that casing stick, spank me spank me spaaaaannnnk mee!"
Re: Password tester?
Lastof wrote: I hate password testers. They are unhelpful, and as far as I can tell, the most use that ever do is scare users, rather than get them to change their passwords.
Oh, and if someone could tell me how in the name of all things good hotmail thought that my 12 character password, containing upper and lower cases, as well as numbers, was only moderate security. What does it expect me to do, memorise somthing 128 characters long, and change it every time I log in?
Not really.
It would just grade your password based on length (though not THAT long... 8 char should be sufficient) and variety of characters used (Capitals and lowercase, numbers and symbols).
You're probably right, it wouldn't help that much... but it could never hurt, you know?
-
- Registered User
- Posts: 687
- Joined: Sun May 11, 2003 11:17 am
Re: Password tester?
You can already set password requirements in Olympus, including minimum length and requiring certain complexities (none, mixed case, alphanumerics, and symbols, IIRC).
You can never go home again... but I guess you can shop there.
Re: Password tester?
That's different than allowing the password, but saying to the user, hey, your password could be more secure. FWIW, I think the argument about "scaring" away users is more applicable to hard requirements (i.e. no registration if your password does not respect them) than to a suggestive approach.
- DigitalShadow
- Registered User
- Posts: 72
- Joined: Wed Mar 01, 2006 12:13 pm
- Location: Germany
- Contact:
Re: Password tester?
maybe it won't scare them away but it would probably annoy a lot of them. Most users know that their passwords are not the securest ones. you don't need to tell them that. even if you do, only a small amout of them would change their password.
((perfect timing-_-, i wasnt able to log in this weekend cuz Dad thinks this site is bad and that your all the spawn of Satan....hmm go figure^_^))
Re: Password tester?
I wasn't arguing in favor of a password tester, I was just saying that if there are arguments against a password tester, they would probably apply at least as strongly to enforcing password requirements.
- Cheater512
- Registered User
- Posts: 245
- Joined: Thu Mar 23, 2006 1:29 am
- Location: Brisbane, Australia
- Contact:
Re: Password tester?
I'm for a password tester as long as it can be turned off.
It would be just like the visual confirmation.
It also has to be accurate. I've seen ones where my high security 16 character alpha-numeric password is 'medium security' and a shorter password with letters and symbols in it is also 'medium security'.
It would be just like the visual confirmation.
It also has to be accurate. I've seen ones where my high security 16 character alpha-numeric password is 'medium security' and a shorter password with letters and symbols in it is also 'medium security'.
- DigitalShadow
- Registered User
- Posts: 72
- Joined: Wed Mar 01, 2006 12:13 pm
- Location: Germany
- Contact:
Re: Password tester?
nah, would rather say that passwords should be autogenerated and emailed to the new member and only the admin would be able to change passwords if needed, while members not being able to change them. as i said earlier, what is the use of an password tester if members ignore the result of the test because they are to "lazy" or not willing to memorise an hard to remember "secure" password.
((perfect timing-_-, i wasnt able to log in this weekend cuz Dad thinks this site is bad and that your all the spawn of Satan....hmm go figure^_^))