4 ms·
I want a future without passwords, but that future gives me the choice of third parties to host my passwords. I prefer 1Password, some people like iCloud, while
by graiz 5y ago
I want a future without passwords, but that future gives me the choice of third parties to host my passwords. I prefer 1Password, some people like iCloud, while others may prefer a Microsoft solution.
Passwords suck and we need a per-site password policy that can act like an API. Kind of like a Robots.txt, to declare, "This site needs 8-20 characters, 1 symbol and the URL's for login, reset and forgot password are these URI's."
- easton 5y agoLike these? https://developer.mozilla.org/en-US/docs/Web/HTML/Element/input/password#additional_attributes https://developer.mozilla.org/en-US/docs/Web/HTML/Element/in... 1Password (and iCloud Keychain, maybe?) can read these off of the input element and use them when they calculate the password.
- bo1024 5y agoOr ditch site passwords and use public key authentication, like ssh has used for decades...
- christianbeeke 5y agoYes! What could be/are reasons to not do this?
- md_ 5y agoThis is the goal with WebAuthn and FIDO.
- parliament32 5y agoThis is already built into all browser and works great, as client-side SSL certificates. Nobody uses it though because you can't trust users to manage their private keys properly.