<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://forums.iis.net/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:cs="http://blogs.iis.net/"><channel><title>IIS.NET Site Feedback</title><link>http://forums.iis.net/1028.aspx</link><description>Provide IIS.NET Webmasters feedback about your experience while visiting IIS.NET</description><dc:language>en</dc:language><generator>CommunityServer 2007 SP1 (Build: 20510.895)</generator><item><title>Re: password too restrictive</title><link>http://forums.iis.net/thread/1911396.aspx</link><pubDate>Fri, 24 Jul 2009 03:30:10 GMT</pubDate><guid isPermaLink="false">50bcf3b4-f6fe-4638-adff-0c150e922e99:1911396</guid><dc:creator>steve schofield</dc:creator><slash:comments>0</slash:comments><comments>http://forums.iis.net/thread/1911396.aspx</comments><wfw:commentRss>http://forums.iis.net/commentrss.aspx?SectionID=1028&amp;PostID=1911396</wfw:commentRss><description>&lt;p&gt;It todays day and age, I&amp;#39;m glad IIS.net is having more restrictive passwords. :)&amp;nbsp; Plus I see they have integrated auth now with Windows Live, so you can use that.&amp;nbsp; If it&amp;#39;s simple then your login with be automatic.&lt;/p&gt;</description></item><item><title>Re: password too restrictive</title><link>http://forums.iis.net/thread/1911340.aspx</link><pubDate>Thu, 23 Jul 2009 18:05:47 GMT</pubDate><guid isPermaLink="false">50bcf3b4-f6fe-4638-adff-0c150e922e99:1911340</guid><dc:creator>floppyho</dc:creator><slash:comments>0</slash:comments><comments>http://forums.iis.net/thread/1911340.aspx</comments><wfw:commentRss>http://forums.iis.net/commentrss.aspx?SectionID=1028&amp;PostID=1911340</wfw:commentRss><description>&lt;p&gt;&lt;BLOCKQUOTE&gt;&lt;div&gt;&lt;img src="/Themes/iis/images/icon-quote.gif"&gt; &lt;strong&gt;Rovastar:&lt;/strong&gt;&lt;/div&gt;&lt;div&gt;I don&amp;#39;t understand why people are complaining about this.&lt;br /&gt;Especially those that *just* login to complain about passwords. Troll-like if you ask me.&lt;/div&gt;&lt;/BLOCKQUOTE&gt;&lt;br /&gt;Your post, is probably the first trolling post in this thread.&amp;nbsp; Nice try.&amp;nbsp; It seems that is your purpose for responding here.&lt;br /&gt;&lt;/p&gt;&lt;p&gt;I created this thread as a constructive suggestion for the site admins.&amp;nbsp; I have multiple accounts here and receive an email every time someone responds to my posts.&amp;nbsp; When you respond to this, I will get an email with your comment.&amp;nbsp; Do you understand how that works?&lt;br /&gt;&lt;/p&gt;&lt;p&gt;&lt;BLOCKQUOTE&gt;&lt;div&gt;&lt;img src="/Themes/iis/images/icon-quote.gif"&gt; &lt;strong&gt;Rovastar:&lt;/strong&gt;&lt;/div&gt;&lt;div&gt;I make all my passwords complex now as you never know what the password policy of a site/company will be. So it has never been a issue.&lt;/p&gt;&lt;p&gt;IF ou wnat unique passwords for each site why not havea normal password say&lt;/p&gt;&lt;p&gt;Test123 followed by the site name so iisnet&lt;/p&gt;&lt;p&gt;So your password would be Test123iisnet&lt;/div&gt;&lt;/BLOCKQUOTE&gt;&lt;br /&gt;Doesn&amp;#39;t that defeat the purpose of having a restrictive password?&amp;nbsp; &lt;br /&gt;&lt;/p&gt;&lt;p&gt;&lt;BLOCKQUOTE&gt;&lt;div&gt;&lt;img src="/Themes/iis/images/icon-quote.gif"&gt; &lt;strong&gt;Rovastar:&lt;/strong&gt;&lt;/div&gt;&lt;div&gt;Enough people aren&amp;#39;t complaining as there is like wrong that is the point. Anyway enough feeding.....&lt;/div&gt;&lt;/BLOCKQUOTE&gt; &lt;br /&gt;If enough people weren&amp;#39;t complaining then why are you responding?&lt;br /&gt;&lt;/p&gt;</description></item><item><title>Re: password too restrictive</title><link>http://forums.iis.net/thread/1911311.aspx</link><pubDate>Thu, 23 Jul 2009 13:50:08 GMT</pubDate><guid isPermaLink="false">50bcf3b4-f6fe-4638-adff-0c150e922e99:1911311</guid><dc:creator>Rovastar</dc:creator><slash:comments>0</slash:comments><comments>http://forums.iis.net/thread/1911311.aspx</comments><wfw:commentRss>http://forums.iis.net/commentrss.aspx?SectionID=1028&amp;PostID=1911311</wfw:commentRss><description>&lt;p&gt;I don&amp;#39;t understand why people are complaining about this.&lt;/p&gt;&lt;p&gt;Especially those that *just* login to complain about passwords. Troll-like if you ask me.&lt;/p&gt;&lt;p&gt;I make all my passwords complex now as you never know what the password policy of a site/company will be. So it has never been a issue.&lt;/p&gt;&lt;p&gt;IF ou wnat unique passwords for each site why not havea normal password say&lt;/p&gt;&lt;p&gt;Test123 followed by the site name so iisnet&lt;/p&gt;&lt;p&gt;So your password would be Test123iisnet&lt;/p&gt;&lt;p&gt;Enough people aren&amp;#39;t complaining as there is like wrong that is the point. Anyway enough feeding.....&lt;br /&gt;&lt;/p&gt;</description></item><item><title>Re: password too restrictive</title><link>http://forums.iis.net/thread/1911287.aspx</link><pubDate>Thu, 23 Jul 2009 08:21:52 GMT</pubDate><guid isPermaLink="false">50bcf3b4-f6fe-4638-adff-0c150e922e99:1911287</guid><dc:creator>floppyho</dc:creator><slash:comments>0</slash:comments><comments>http://forums.iis.net/thread/1911287.aspx</comments><wfw:commentRss>http://forums.iis.net/commentrss.aspx?SectionID=1028&amp;PostID=1911287</wfw:commentRss><description>&lt;p&gt;Well...&amp;nbsp; People like me think you are obsessive compulsive, whereas you probably think we are lazy. &lt;/p&gt;&lt;p&gt;I had to create a new account to reply to this message.&amp;nbsp; Why is that?&amp;nbsp; I forgot my password here yet again because it is too restrictive.&amp;nbsp; Not only that, but it takes too long to receive the password reset email.&amp;nbsp; &lt;br /&gt;&lt;/p&gt;&lt;p&gt;Was the passwords always linked up to MS?&amp;nbsp; I don&amp;#39;t remember that when I created my other account.&amp;nbsp; Now that this account is hooked up to my&amp;nbsp; MS account, I wont have to worry about those passwords.&lt;br /&gt;&lt;/p&gt;&lt;p&gt;&amp;nbsp;If enough people complain about something, then it is probably a valid complaint. &lt;br /&gt;&lt;/p&gt;</description></item><item><title>Re: password too restrictive</title><link>http://forums.iis.net/thread/1911281.aspx</link><pubDate>Thu, 23 Jul 2009 07:39:52 GMT</pubDate><guid isPermaLink="false">50bcf3b4-f6fe-4638-adff-0c150e922e99:1911281</guid><dc:creator>qbernard</dc:creator><slash:comments>0</slash:comments><comments>http://forums.iis.net/thread/1911281.aspx</comments><wfw:commentRss>http://forums.iis.net/commentrss.aspx?SectionID=1028&amp;PostID=1911281</wfw:commentRss><description>&lt;p&gt;Ian, I&amp;#39;m sure Microsoft is reading this as well, it is up to MS to decide what complexity they required for this site. Of coz for community sites this can be a little bit overwhelm, but heck we all have our own opinion.&lt;/p&gt;
&lt;p&gt;For your concern about many passwords, I think it is up to the individual on managing those passwords, I have at least few hundreds, and out of that 100+ is my own and not work related, I maintain two different encrypted files to keep tracks of the password, and for work related, my peers keep the same copy of encrypted files, and for personal one.&amp;nbsp;I let my wife know where I put it and how to unlock it in the event errrr I&amp;#39;m longer available :) and those personal related passwords are not related to community/forums/newsgroup, web memberships etc. For these type of password I just put it on a simple excel file and secure it password, even it got stolen i don&amp;#39;t care much at the impact.... at most the attacker can post here under my name. yet. what&amp;#39;s the big deal about this?&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&lt;/p&gt;</description></item><item><title>Re: password too restrictive</title><link>http://forums.iis.net/thread/1911161.aspx</link><pubDate>Wed, 22 Jul 2009 10:28:47 GMT</pubDate><guid isPermaLink="false">50bcf3b4-f6fe-4638-adff-0c150e922e99:1911161</guid><dc:creator>IanDSamson</dc:creator><slash:comments>0</slash:comments><comments>http://forums.iis.net/thread/1911161.aspx</comments><wfw:commentRss>http://forums.iis.net/commentrss.aspx?SectionID=1028&amp;PostID=1911161</wfw:commentRss><description>&lt;p&gt;That may be the case, tomkmvp, but how many sites do you work on? How many usernames, how many passwords do you have to remember? What happens should your disk crash and all your passwords are lost? Nothing is infallible and especially not Microsoft products, so if you have to reinstall your OS, how do you remember which password you entered &amp;quot;once&amp;quot; and told the site to remember? It&amp;#39;s just a cookie that it puts on YOUR hard disk, not on the host site.&lt;br /&gt;&lt;/p&gt;&lt;p&gt;I could not remember my password so I changed it to one that I can remember, only this time it has to have an upper case letter somewhere in the password.&lt;/p&gt;&lt;p&gt;I still maintain it is far too restrictive, and who cares about &amp;#39;bots&amp;#39; that send spam? I delete over 50 spam every day. &lt;br /&gt;&lt;/p&gt;</description></item><item><title>Re: password too restrictive</title><link>http://forums.iis.net/thread/1911118.aspx</link><pubDate>Tue, 21 Jul 2009 23:12:18 GMT</pubDate><guid isPermaLink="false">50bcf3b4-f6fe-4638-adff-0c150e922e99:1911118</guid><dc:creator>8xup68</dc:creator><slash:comments>0</slash:comments><comments>http://forums.iis.net/thread/1911118.aspx</comments><wfw:commentRss>http://forums.iis.net/commentrss.aspx?SectionID=1028&amp;PostID=1911118</wfw:commentRss><description>&lt;BLOCKQUOTE&gt;&lt;div&gt;&lt;img src="/Themes/iis/images/icon-quote.gif"&gt; &lt;strong&gt;qbernard:&lt;/strong&gt;&lt;/div&gt;&lt;div&gt;Hehe.. I don&amp;#39;t have the same password nor pattern for every sites I associated with :)
You got 1 more year to go before I change it.&lt;/div&gt;&lt;/BLOCKQUOTE&gt;</description></item><item><title>Re: password too restrictive</title><link>http://forums.iis.net/thread/1904636.aspx</link><pubDate>Sun, 24 May 2009 13:01:57 GMT</pubDate><guid isPermaLink="false">50bcf3b4-f6fe-4638-adff-0c150e922e99:1904636</guid><dc:creator>qbernard</dc:creator><slash:comments>0</slash:comments><comments>http://forums.iis.net/thread/1904636.aspx</comments><wfw:commentRss>http://forums.iis.net/commentrss.aspx?SectionID=1028&amp;PostID=1904636</wfw:commentRss><description>Hehe.. I don&amp;#39;t have the same password nor pattern for every sites I associated with :)
You got 1 more year to go before I change it.</description></item><item><title>Re: password too restrictive</title><link>http://forums.iis.net/thread/1904406.aspx</link><pubDate>Thu, 21 May 2009 02:49:55 GMT</pubDate><guid isPermaLink="false">50bcf3b4-f6fe-4638-adff-0c150e922e99:1904406</guid><dc:creator>steve schofield</dc:creator><slash:comments>0</slash:comments><comments>http://forums.iis.net/thread/1904406.aspx</comments><wfw:commentRss>http://forums.iis.net/commentrss.aspx?SectionID=1028&amp;PostID=1904406</wfw:commentRss><description>&lt;p&gt;&amp;nbsp;What is your password pattern again? :)&amp;nbsp; I&amp;#39;d be willing to test out that bank account security for you.&lt;br /&gt;&lt;/p&gt;</description></item><item><title>Re: password too restrictive</title><link>http://forums.iis.net/thread/1904324.aspx</link><pubDate>Wed, 20 May 2009 12:47:18 GMT</pubDate><guid isPermaLink="false">50bcf3b4-f6fe-4638-adff-0c150e922e99:1904324</guid><dc:creator>qbernard</dc:creator><slash:comments>0</slash:comments><comments>http://forums.iis.net/thread/1904324.aspx</comments><wfw:commentRss>http://forums.iis.net/commentrss.aspx?SectionID=1028&amp;PostID=1904324</wfw:commentRss><description>Oohh. mine was err 6 yrs ago... Oops.. bad security practise :) &lt;br /&gt;Ok Ok.. will change it in 2010.</description></item><item><title>Re: password too restrictive</title><link>http://forums.iis.net/thread/1903445.aspx</link><pubDate>Tue, 12 May 2009 13:25:34 GMT</pubDate><guid isPermaLink="false">50bcf3b4-f6fe-4638-adff-0c150e922e99:1903445</guid><dc:creator>tomkmvp</dc:creator><slash:comments>0</slash:comments><comments>http://forums.iis.net/thread/1903445.aspx</comments><wfw:commentRss>http://forums.iis.net/commentrss.aspx?SectionID=1028&amp;PostID=1903445</wfw:commentRss><description>&lt;p&gt;I don&amp;#39;t even know my password.&amp;nbsp; I entered it once and told the site to remember me. Doesn&amp;#39;t seem like much of an issue ...&lt;/p&gt;</description></item><item><title>Re: password too restrictive</title><link>http://forums.iis.net/thread/1903291.aspx</link><pubDate>Mon, 11 May 2009 02:57:41 GMT</pubDate><guid isPermaLink="false">50bcf3b4-f6fe-4638-adff-0c150e922e99:1903291</guid><dc:creator>steve schofield</dc:creator><slash:comments>0</slash:comments><comments>http://forums.iis.net/thread/1903291.aspx</comments><wfw:commentRss>http://forums.iis.net/commentrss.aspx?SectionID=1028&amp;PostID=1903291</wfw:commentRss><description>&lt;p&gt;One reason for more restrictive passwords is to keep &amp;#39;spam bots&amp;#39; from invading and ruining a great IIS resource.&amp;nbsp; I agree having easier to remember and less restrictive passwords for a community site such as this is nice, unfortunately the spammers (ones who create bots) have tried to take advantage of such sites, which in turn make things worthless.&amp;nbsp; I&amp;#39;ll have a more restrictive password and a great IIS resources.&amp;nbsp; My thoughts :)&lt;/p&gt;</description></item><item><title>Re: password too restrictive</title><link>http://forums.iis.net/thread/1903281.aspx</link><pubDate>Sun, 10 May 2009 19:53:37 GMT</pubDate><guid isPermaLink="false">50bcf3b4-f6fe-4638-adff-0c150e922e99:1903281</guid><dc:creator>IanDSamson</dc:creator><slash:comments>0</slash:comments><comments>http://forums.iis.net/thread/1903281.aspx</comments><wfw:commentRss>http://forums.iis.net/commentrss.aspx?SectionID=1028&amp;PostID=1903281</wfw:commentRss><description>&lt;p&gt;&lt;BLOCKQUOTE&gt;&lt;div&gt;&lt;img src="/Themes/iis/images/icon-quote.gif"&gt; &lt;strong&gt;riznick:&lt;/strong&gt;&lt;/div&gt;&lt;div&gt; 
&lt;p&gt;maybe im just being cranky.&amp;nbsp; I like using generic easy passwords for sites where security is of low importance.&amp;nbsp; Forcing us to have uppercase+lowercase+numbers on a forum seems like overkill.&lt;/p&gt;
&lt;p&gt;&lt;/div&gt;&lt;/BLOCKQUOTE&gt;&lt;/p&gt;
&lt;p&gt;&amp;quot;SEEMS like&amp;quot;? It IS overkill. I would tell those programmers to be less anal-retentive and more user friendly, otherwise their userbase may decline in favor of other sites that are less prescriptive.&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&lt;/p&gt;</description></item><item><title>Re: password too restrictive</title><link>http://forums.iis.net/thread/1903280.aspx</link><pubDate>Sun, 10 May 2009 19:49:53 GMT</pubDate><guid isPermaLink="false">50bcf3b4-f6fe-4638-adff-0c150e922e99:1903280</guid><dc:creator>IanDSamson</dc:creator><slash:comments>0</slash:comments><comments>http://forums.iis.net/thread/1903280.aspx</comments><wfw:commentRss>http://forums.iis.net/commentrss.aspx?SectionID=1028&amp;PostID=1903280</wfw:commentRss><description>&lt;p&gt;when i joined this site, I was told my regular password was not acceptable because the password I had to use (HAD TO use) contains at least one upper case, one lower case, and one numeral in the password. Just who the #*$&amp;amp; do IIS think they are to prescribe user passwords?&lt;/p&gt;</description></item><item><title>Re: password too restrictive</title><link>http://forums.iis.net/thread/1887947.aspx</link><pubDate>Thu, 18 Dec 2008 09:40:45 GMT</pubDate><guid isPermaLink="false">50bcf3b4-f6fe-4638-adff-0c150e922e99:1887947</guid><dc:creator>riznick</dc:creator><slash:comments>0</slash:comments><comments>http://forums.iis.net/thread/1887947.aspx</comments><wfw:commentRss>http://forums.iis.net/commentrss.aspx?SectionID=1028&amp;PostID=1887947</wfw:commentRss><description>&lt;p&gt;maybe im just being cranky.&amp;nbsp; I like using generic easy passwords for sites where security is of low importance.&amp;nbsp; Forcing us to have uppercase+lowercase+numbers on a forum seems like overkill.&lt;/p&gt;</description></item></channel></rss>