← Back to Users
hughperkins's activity in the archive.
-> if someone knows my password, they still need the card and my userid-> if someone has the card, they still need the password, and userid -> if someone has the card, reasonable chance I'll notice I no longer have it, and will cancel it Seems pretty secure. No particular strong password required, and no (or very little) chance of someone using a keylogger to grab the password. No longer put much store in single-factor password systems: too easy for someone to see you typing it, and no way to know if someone saw you or not.
-> if someone knows my password, they still need the card and my userid
-> if someone has the card, they still need the password, and userid
-> if someone has the card, reasonable chance I'll notice I no longer have it, and will cancel it
Seems pretty secure. No particular strong password required, and no (or very little) chance of someone using a keylogger to grab the password.
No longer put much store in single-factor password systems: too easy for someone to see you typing it, and no way to know if someone saw you or not.