<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Bites of Apple &#187; password</title>
	<atom:link href="http://www.bitesofapple.com/tag/password/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.bitesofapple.com</link>
	<description>Fruitful news for small business Apple users.       By Ron Seybold</description>
	<lastBuildDate>Thu, 22 Jul 2010 01:23:20 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>Making your passwords better for less</title>
		<link>http://www.bitesofapple.com/2010/01/11/making-your-passwords-better-for-less/</link>
		<comments>http://www.bitesofapple.com/2010/01/11/making-your-passwords-better-for-less/#comments</comments>
		<pubDate>Tue, 12 Jan 2010 02:36:32 +0000</pubDate>
		<dc:creator>Ron Seybold</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[password]]></category>

		<guid isPermaLink="false">http://www.bitesofapple.com/?p=303</guid>
		<description><![CDATA[Businesses need security even more than personal computer users. We&#8217;ve got sensitive financial data from customers; we&#8217;ve got more banking sites than consumers, including credit card merchant accounts like American Express Merchant Services &#8212; which hates to send a statement by paper. We&#8217;ve got customer lists that competitors might like to have. We&#8217;ve got business [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.bitesofapple.com/wp-content/uploads/2010/01/KeepassIcon.jpg"><img class="alignleft size-full wp-image-304" title="KeepassIcon" src="http://www.bitesofapple.com/wp-content/uploads/2010/01/KeepassIcon.jpg" alt="" width="82" height="86" /></a>Businesses need security even more than personal computer users. We&#8217;ve got sensitive financial data from customers; we&#8217;ve got more banking sites than consumers, including credit card merchant accounts like American Express Merchant Services &#8212; which hates to send a statement by paper. We&#8217;ve got customer lists that competitors might like to have. We&#8217;ve got business plans that forecast our steps to grow. And so on.</p>
<p>And so passwords are more important to a small business user. Yours are probably not good enough, according to <a href="http://www.lifehacker.com.au/2010/01/your-passwords-arent-as-secure-as-you-think/" target="_blank">a thoughtful article</a> from the Australian outlet of the popular lifehacker.com Web site.</p>
<blockquote><p>The only truly secure way to store your passwords is to use a password manager to securely track your passwords, combined with a a great master password to protect the rest of your saved passwords — if you use an easy password for your password manager, it would be easy to crack with a brute force attack. Don’t lure yourself into a false sense of security by just using one — your password manager password should be at least 10 alpha-numeric characters if you really want to be secure.</p></blockquote>
<p>Five simple rules to make a very complex padlock for your sensitive stuff.</p>
<ol>
<li>More characters are better</li>
<li>Words are bad &#8212; scramble them</li>
<li>Always include special characters like %</li>
<li>Upper and lower-case both, please</li>
<li>Don&#8217;t forget to use numerals, too</li>
</ol>
<p>Firefox will give you a score on how good your master password is. So will a fine open-source <a href="http://www.keepassx.org/downloads" target="_blank">password manager that runs on the Mac, KeePassX</a>. It organizes your passwords by type, lets you look them up and more. Version 0.4 (okay, it&#8217;s not a commercial product yet) is free. We&#8217;ve tested it on Snow Leopard and it works great. KeePassX will copy any password into your Mac&#8217;s clipboard, so you can paste it into a Web site. At some point early in this whole protection process, however, you will need to create a password that unlocks your password manager&#8217;s database. This is the only password your manager cannot store, of course. And it&#8217;s the last one that you want to forget.<span id="more-303"></span></p>
<p><strong>If you take nothing else away</strong> from the lifehacker article, remember this while browsing the Web: <em>Once You Click “Remember Password” It’s All Over. </em>Unless you use the built-in password manager in Firefox. You are using Firefox because of its built-in Master Password manager, right? Apple&#8217;s Safari browser hasn&#8217;t got this feature. The rub here is that your master password has got to be something you can recall and type in every time you start up Firefox. The Firefox password services are under the Preferences menu for the browser, in the Security pane.</p>
<p><a href="http://www.bitesofapple.com/wp-content/uploads/2010/01/xheadLogo.jpg"><img class="alignleft size-full wp-image-307" title="xheadLogo" src="http://www.bitesofapple.com/wp-content/uploads/2010/01/xheadLogo.jpg" alt="" width="195" height="64" /></a>Commercial (not free, but inexpensive) password managers for the Mac include those which use the <a href="http://en.wikipedia.org/wiki/Blowfish_%28cipher%29"> 448-bit Blowfish Encryption Algorithm</a>. At the moment it appears xhead Software has one of the best solutions that uses Blowfish, an algorithm xhead describes as</p>
<blockquote><p>One of the fastest, most secure encryption algorithms in existence and has no known cryptographic weaknesses. It hasn&#8217;t been cracked yet. In fact, statistically speaking, if you use a sufficiently long password to encrypt your files, a hacker using the brute-force attack method of trying every possible password would spend longer than the known age of the universe to crack your file.</p>
<p>You can get the <a href="http://www.xheadsoftware.com/info_xhead.asp" target="_blank">xhead product info 2.0</a> to do your password management for $25, $40 if you want its delights on up to five computers. If nothing else, there&#8217;s one security step you want to take with your Mac. Don&#8217;t work every day in your administrator account. You&#8217;d be surprised what caliber of Mac user doesn&#8217;t know what that means. More on that Wednesday.</p></blockquote>
]]></content:encoded>
			<wfw:commentRss>http://www.bitesofapple.com/2010/01/11/making-your-passwords-better-for-less/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
