Labels

_fuxi (75) _IV (146) _misc (5) {610610 (30) algo (1) automatedTrading (8) banking/economy (3) book (14) c++misc (125) c++real (15) c++STL/java_container (7) cppTemplate (1) db (13) DB_tuning (4) deepUnder (1) dotnet (69) eTip (17) excelVBA (12) finance+sys (34) financeMisc (24) financeRisk (2) financeTechMisc (4) financeVol (21) finmath (17) fixedIncome (25) forex (16) IDE (24) invest (1) java (43) latency (4) LinearAlgebra (3) math (30) matlab (24) memoryMgmt (11) metaPrograming (2) MOM (15) msfm (1) murex (4) nofx (11) nosql (3) OO_Design (1) original_content (4) scriptUnixAutosys (19) SOA (7) socket/stream (15) sticky (1) subquery+join (2) swing (32) sybase (6) tech_orphan (12) tech+fin_career (30) telco (11) thread (21) timeSaver (13) tune (10) US_imm (2) US_misc (2) windoz (20) z_algo+dataStructure (4) z_arch (2) z_c#GUI (30) z_career (10) z_career]US^Asia (2) z_careerBig20 (1) z_careerFinanceTech (11) z_FIX (6) z_forex (31) z_hib (2) z_ikm (7) z_inMemDB (3) z_j2ee (10) z_oq (14) z_php (1) z_py (26) z_quant (4) z_skillist (3) z_spr (5)

Saturday, August 8, 2015

Fwd: memorize passwords - tips

I never let browsers remember my password. Rather I always type the passwords by hand as refresher. Furthermore, I practice logging in periodically – a necessary cost of maintenance, just like workout.

Password hint questions -- I'm yet to work out the best practice. How about
* all questions about places - hangzhou

--stock password
By using the same stock password on 5 sites, we might remember it more easily. However, when we change password on one of these sites, we have to remember which site

If you already came up with a unique password for a site and use it long enough, then you can stick to that forever. However, there's a risk of theft.

As a widely useful stock password, there should be numbers and letters (not asdf....) I'd put no caps and no meta characters.

If a site requires caps, I use London

--Classify the sites :
* Those sites with 2-factor: ok to have a stock password.
* xp:  Some sites are fragile -- would lock you out after very few failures. I'd avoid caps.
* A few (like 10) sites I access frequently. Easy to commit to memory. Better work out a solution for those infrequent sites.
* Obviously some accounts are critical. I tend to feel a large number (like 30) of sites are critical, but I had better pick no more than 10 as really critical, and think carefully about them.
* Some really critical sites have a 24-hour hotline but they may not be able to authenticate you over phone
* hsbc site is notoriously difficult, so I would use the simplest password, without caps.