Re: Are passphrases allowed in TrueCrypt?
- From: "Mike Easter" <MikeE@xxxxxxxxxxxx>
- Date: Wed, 9 Dec 2009 19:50:20 -0800
marck@xxxxxxxxx wrote:
the contrary advise on the Diceware page, complete with math,
that argues randomly chosen words cannot be cracked that easily.
There is some good information and also links on the diceware pages.
I've always stuck with multi word passphrases. They are a heck of a
lot easier to remember. So far, I have never forgotten a diceware
passphrase, and I've been using them for some years with BestCrypt and
other encryption programs.
One of the links there - at the diceware page - I like is the one on
'shocking nonsense'. I'll paste a couple of sentences from the article
below.
http://www.unix-ag.uni-kl.de/~conrad/krypto/passphrase-faq.html
Passphrase FAQ - FAQ: How do I choose a good password or phrase? -
"Shocking nonsense" means to make up a short phrase or sentence that is
both nonsensical and shocking in the culture of the user, that is, it
contains grossly obscene, racist, impossible or other extreme
juxtaposition of ideas. This technique is permissable because the
passphrase, by its nature, is never revealed to anyone with
sensibilities to be offended. -- When you are permitted to use
passphrases of arbitrary length (in PGP for example) it is not necessary
to further perturb your 'shocking nonsense' passphrase to include
numbers or special symbols because the pool of word choices is already
very high. Not needing those special symbols or numbers (that are not
intrinsically meaningful) makes the shocking nonsense passphrase that
much easier to remember.
64 characters is plenty of 'room' for a nice 'long' shocking nonsense
passphrase.
--
Mike Easter
.
- Follow-Ups:
- Re: Are passphrases allowed in TrueCrypt?
- From: marck
- Re: Are passphrases allowed in TrueCrypt?
- References:
- Are passphrases allowed in TrueCrypt?
- From: marck
- Re: Are passphrases allowed in TrueCrypt?
- From: Mike Easter
- Re: Are passphrases allowed in TrueCrypt?
- From: marck
- Are passphrases allowed in TrueCrypt?
- Prev by Date: Re: Are passphrases allowed in TrueCrypt?
- Next by Date: Re: Web searches hijacked by malware
- Previous by thread: Re: Are passphrases allowed in TrueCrypt?
- Next by thread: Re: Are passphrases allowed in TrueCrypt?
- Index(es):
Relevant Pages
|