An IT Security consultant has made three primary recommendations regarding passwords:
- Prohibit guessable passwords such as common names. Require special characters and a mix of caps, lower case and numbers in passwords.
- Reauthenticate before changing passwords
- Make authenticators unforgeable