Pradeep,

A couple other resources to help you:

How To Guide on Submitting a Good Feature Request:
http://www.mifos.org/developers/wiki/product/features/feature-request

Collection of Security Tips and Best Practices drafted by security expert,
Denis Foo Kune: http://www.mifos.org/developers/wiki/ThreatModel

Ed

On Wed, Aug 18, 2010 at 5:34 PM, Ryan Whitney <
[email protected]> wrote:

>  Pradeep,
>
> Thanks for the clarification.  At the moment, we don’t support that type of
> functionality but please feel free to add a feature request (*
> http://mifosforge.jira.com/secure/Dashboard.jspa*).
>
> That being said, I personally don’t think we want to make the minimum
> password length any shorter than 6, which to me, already feels too short.
>  In this day and age, with all the hackers, crackers and other people out on
> the internet to do damage, its in the best interest of institutions to force
> their users to create strong and secure passwords – Especially since Mifos
> is online!  I also am not sure why you would want to make the maximum less,
> if someone wants a 25 char or longer password (and they can remember), you
> should encourage this as it means it is more likely more secure (well, as
> long as they aren’t entering their name).
>
> Where Mifos password functionality could use some improvements is
>
>    - Not allowing common passwords.  Eg, password, user’s name, common
>    words
>    - enforce strong passwords: eg, use mixed numerals and alpha chars, use
>    different case, use non alphanumeric characters
>    - Don’t allow users to re-use the same password.
>
>
> It really is in your best interest, and general IT best practices, to
> enforce strong passwords.
>
> Have I convinced you yet?
>
> Ryan
>
>
>
> On 8/18/10 19:37, "Pradeep Ku. Panda" <[email protected]>
> wrote:
>
> Hi Ryan,
>
>
> I am using mifos 1.5.
>
> At present while we create the System user through Admin link the password
> of the System user take more than 25 digit and the minimum length of the
> password is 6.
>
> So that i want in what way we can change the length of the password such as
> minimum is 4 and maximum is 8 or 10.
>
>
>
>
>
>
> On Wed, Aug 18, 2010 at 8:40 AM, Ryan Whitney <
> [email protected]> wrote:
>
> Pradeep,
>
> I’m not aware of what our current limits are, but I would file an
> enhancement request.  Might also help us if you were a bit more specific
> about what you are trying to do (increase it, shorten it, change the minimum
> number required?)
>
> http://mifosforge.jira.com/secure/Dashboard.jspa
>
> r
>
>
>
> On 8/17/10 12:23, "Pradeep Ku. Panda" <[email protected] <
> http://[email protected]> > wrote:
>
>
> Hi All,
>
>
>       Can anyone suggest me that how to change the length of user name and
> password ?
>
>
> --
> *Ryan Whitney **
> **Mifos Technical Program Manager
> **[email protected]*
> Mifos - Technology that Empowers Microfinance (www.mifos.org)
> *Our mission is to enable the poor, especially the poorest, to create a
> world without poverty.
> <**http://grameenfoundation.org/take-action/ingenuity-fund-challenge/*>
> P please consider the environment before printing this e-mail.
>
>
> ------------------------------------------------------------------------------
> This SF.net email is sponsored by
>
> Make an app they can't live without
> Enter the BlackBerry Developer Challenge
> http://p.sf.net/sfu/RIM-dev2dev
> _______________________________________________
> Mifos-users mailing list
> [email protected]
> https://lists.sourceforge.net/lists/listinfo/mifos-users
>
>
------------------------------------------------------------------------------
This SF.net email is sponsored by 

Make an app they can't live without
Enter the BlackBerry Developer Challenge
http://p.sf.net/sfu/RIM-dev2dev 
_______________________________________________
Mifos-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/mifos-users

Reply via email to