Navigate to next or previous posts:
« The real problem in ID theft | Emergent Chaos Main page | I've Made Up My Mind, Don't Bother Me With the Facts »
« The real problem in ID theft | Emergent Chaos Main page | I've Made Up My Mind, Don't Bother Me With the Facts »
Comments
Excellent catch.
Hello, World!\n
Posted by: Kees Leune | March 1, 2008 9:16 PM
Looks pretty secure to me. Judging from the photo there is no way to enter 7, 9 or *
:)
Posted by: Sven Svensson | March 2, 2008 12:55 AM
Ah, an excellent year ...
Posted by: shrdlu | March 2, 2008 7:30 AM
Believe it or not, there is an excellent reason for doing this.
1. You want the people who currently have access to the room to keep on having it.
2. You want them to quickly learn the brand new code and/or how to use the brand new keypad entry system.
3. After everyone learns it, you can take the sign down.
Surely it's not as secure as having everyone enter their own 6-digit code and throwing an alarm on an incorrect entry. However, sometimes usability is more important than perfect security.
MIT used to have signs at the start of every school year on the computer labs saying "37619*".
http://hacks.mit.edu/by_year/1995/mickey/37619.html
Posted by: Dan Weber | March 3, 2008 9:48 AM
Priceless.
Posted by: Bob Blakley | March 3, 2008 3:58 PM
Thanks Dan for eloquent explanation!
This reminds me of the "Doh!" experience I had when someone outside the security business explained why he had turned off the password obscurity feature. His users were typing in their passwords and seeing them in the clear instead of *****.
He explained that (a) we don't live in university terminal labs any more, and (b) lost passwords are the #1 support problem. Ditto, it is now better to train users to write their passwords on a post-it note on their PC...
Posted by: Iang | March 7, 2008 7:13 AM