Suggestions for Keeping Your Passwords More Secure
Access Control
- Memorize your password, don't write it down
- Don't use passwords that use your name, license plate, or other easily obtainable information
- DON'T SHARE YOUR PASSWORD WITH ANYONE
- Must be different from your userid
- Don't store passwords on your computer
- Don't e-mail a password to someone, even if you trust them
- Do use a lengthy password (within reason)
- Age your password and change it regularly
Passwords to Avoid
- Passwords that could easily be compromised such as:
- Your name, and the names of immediate family.
- House numbers
- Social security numbers, birth dates, phone numbers, etc.
- Other easily obtainable information about you.
- Passwords that are words found in a dictionary
- Passwords that are places and/or proper nouns
- Single letter or number passwords
- Simple strings of letters from the keyboard or keypad
- Any of the above spelled backward or appended or preceded by a single digit
Passwords that Are Encouraged
- Passwords with upper and lower case letters
- Passwords with digits and special characters
- Passwords with eight characters or more
- Passwords that can be quickly and easily typed and remembered by you
- Passwords should include at least one special character (! # % $) or number
Notes
- DO NOT ATTACH YOUR PASSWORD TO YOUR COMPUTER
- Treat your password like the keys to your home or vehicle
- If you must write down the password, try to place it within a sentence of a document or note, or at least don't identify the system, address, or userid affiliated with the password
More Information
For more information about password security, please see the following web pages:
- GOT Passwords do and donts:
- Microsoft's definition of a strong password
- SANS Password Policy - recommendations for a strong password:
http://www.giac.org/pratical/GSEC/Craig_Donovan_GSEC.pdf
http://www.sans.org/resources/policies/Password_Policy.pdf
About IT Technical Assistance
This document is maintained and copyright 2002-2007 by the University of Kentucky Information Technology Customer Service Center for the students, faculty and staff of the University. All rights reserved. Duplication of this document is permitted to the aforementioned audience.
Chapter 1 Subhead 1
Chapter 1 Subhead 2
Begin Document
For More Assistance
Please contact the IT Customer Service Center if you have any questions or problems while following these instructions. The IT CSC is open from 7AM to 6PM Monday through Friday. You may come directly to the CSC at 111 McVey Hall. You may also reach the CSC by phone (859.257.1300) or email (helpdesk@uky.edu).
