Re: Blacklists for passwords

2014-01-22 Thread Daan Hoogland
Demetrius, From a development point of view I would oppose to such a feature. Of course we can en-/disable it by a build profile. Further more it should imo be configurable as to what the format must be that the password adheres to. Hope this spikes some opposition, Daan On Tue, Jan 21, 2014 at

RE: Blacklists for passwords

2014-01-22 Thread Giles Sirett
? Kind Regards Giles D: +44 20 3603 0541 | M: +44 796 111 2055 giles.sir...@shapeblue.com -Original Message- From: Daan Hoogland [mailto:daan.hoogl...@gmail.com] Sent: 22 January 2014 14:05 To: dev Subject: Re: Blacklists for passwords Demetrius, From a development point of view I would

RE: Blacklists for passwords

2014-01-22 Thread Alex Hitchins
...@shapeblue.com] Sent: 22 January 2014 15:56 To: dev@cloudstack.apache.org Subject: RE: Blacklists for passwords I would +1 Demetrius' initial suggestion, however its not just blacklists, its masking to make sure that the pwd's are of sufficient strength I expect some form of password strength control