#644 Expiration date for the master password

closed
nobody
None
5
2013-09-24
2011-11-01
Prinz Eugen
No

Because the master password is very important, it should be changed frequently. I want set a Expiration date for the master password. As the expiration date has passed, Password Safe should encourage the user to change the password.

Discussion

  • Rony Shapiro
    Rony Shapiro
    2012-01-04

    Hi,

    I don't think that changing the master password frequently helps make it more secure, and can think of several reasons why it might in fact make it less secure.
    Also, consider that backup copies of the password database will be protected with the old master password.

    Bruce Scheneier explains this much better than I can:
    http://www.schneier.com/blog/archives/2010/11/changing_passwo.html
    Quoting from there:
    " There's no reason to change any password that is a key to an encrypted file. Just keep the same password as long as you keep the file, unless you suspect it’s been compromised. [...] And write your passwords down, or use a program like Password Safe."

    Rony

     

  • Anonymous
    2012-06-20

    Use a strong password and in 10 million years when it is cracked you should worry. If you not using strong passwords and worry about it being cracked....Well there's your problem.

     
    Last edit: Anonymous 2014-03-22
  • Rony Shapiro
    Rony Shapiro
    2013-09-24

    • Status: pending --> closed