Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> Also worth pointing out that NIST doesn't set policy…

Which has a side effect of NIST not even following its own guidance!



For this particular issue, it took a while but the NIST password policy does follow 800-63 now. They changed it a while back.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: