Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

You force the password to be sufficiently complex by doing what you said: creating it (pseudo)randomly. The aforementioned 128 bit random AES key is robust, assuming the PRNG is solid. A user-provided password utilizing the human mind as its PRNG will never come close.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: