• 0 Posts
Joined 2 months ago
Cake day: August 4th, 2024


  • I work at a university IT department. It’s been a struggle with our auditors to loosen up the password expiration requirements. At least with the students they let anyone with 2FA to go without password expiration, which acts as a nice little carrot-and-stick. But for staff it’s two years (2FA always required), regardless of password quality. I’d rather be able to base password expiration on password quality, personality.

  • LessPass and similar software has some problems. Things like you can’t simply change your master password, you must then recompute and change every site. It’s also not strictly stateless, since you need to know which password iteration you’re on and the user name. Full fledged password managers also typically provide other secret management features, like API keys, SSH keys, credit/debit cards, and identity cards.

  • First, the definition of appeal to authority, since it’s one of the most misunderstood fallacies. Citing someone based on their area of expertise is not appeal to authority. The problem is when you cite the stated opinion of someone, but their area of expertise is not directly relevant to that opinion. I’m a software developer, I could give you an expert opinion on various topics in that area. But outside of topics I am an export on, appeal to authority.

    I didn’t say he’s necessarily wrong. But at the same time, he got his Nobel prize by being an economist who made a substantial contribution to economics. He is not an expert on fascism. His expert opinions in economics often run counter to many other credible expert economists, so you should consider those other expert opinions as well and not just listen to the person who tells you want you want to hear. That’s certainly not anti-intellectual.

    Experts and intellectuals should absolutely be considered to better understand a subject, but they’re not some infallible oracle of truth. They contradict each other, are often limited by an ivory tower environment, and operating in the same societal context as everyone else.