Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Students, faculty, and staff can learn about passphrases and best practices for creating them.  

Password Management Video Guide

Iframe
srchttps://cdnapisec.kaltura.com/p/2090521/sp/209052100/embedIframeJs/uiconf_id/44374591/partner_id/2090521?iframeembed=true&playerId=kaltura_player&entry_id=1_d6l7nqop&flashvars%5BstreamerType%5D=auto&flashvars%5BlocalizationCode%5D=en&flashvars%5BleadWithHTML5%5D=true&flashvars%5BsideBarContainer.plugin%5D=true&flashvars%5BsideBarContainer.position%5D=left&flashvars%5BsideBarContainer.clickToClose%5D=true&flashvars%5Bchapters.plugin%5D=true&flashvars%5Bchapters.layout%5D=vertical&flashvars%5Bchapters.thumbnailRotator%5D=false&flashvars%5BstreamSelector.plugin%5D=true&flashvars%5BEmbedPlayer.SpinnerTarget%5D=videoHolder&flashvars%5BdualScreen.plugin%5D=true&flashvars%5BKaltura.addCrossoriginToIframe%5D=true&&wid=0_1geq2vh9
width608
height400

Strong passwords are essential for your online safety. ITS has the following password guidelines for NetID passwords, and we recommend that you follow these best practices when creating passwords for other services.

Password Guidelines

Complexity rules help you create passwords strong enough to protect your account. The following are the NetID password requirements on all newly created or changed passwords. 

  • Minimum password length is 12 characters.

  • The password must contain characters from three of the following four categories:

    • Upper Case: A B C ...

    • Lower Case: a b c ...

    • Numbers: 1 2 3 ...

    • Symbols: ! @ ? ...

  • Reusing any of the last 10 passwords is not allowed. 

  • Creating a password that ITS systems identify as being exposed in a data breach is not allowed. 

  • The password must not contain 3 consecutive characters contained in your name or NetID. For example, Jonathan wouldn’t be able to use a password that contained “Jon”, “nat”, or “han”.

Tip

Don’t re-use passwords! They should be unique for each service. If one of your passwords is stolen, the compromise is contained to that one service and cannot be leveraged to exploit others.

Passphrase Overview

Passwords can be difficult to remember, especially when they are composed of a random combination of letters and numbers and/or you have more than one of themyou have many unique ones to match different password requirements. Instead of a password, you may consider using a passphrase. 

...

The permutations in using a passphrase are virtually endless and easier for most people to remember.

Best Practices

You should still keep in mind the following best practices:

  • Do not reuse passwords for important websites.

  • Do not use children or pet names.

  • Do not use music lyrics or other well-known phrases.

  • Do not reuse passwords that have been compromised.

    • Do not simply add or increase a number at the end of a password.

  • You should use a password manager for your passwords. Products like LastpassDashlane, and 1Password all have free versions UConn offers a LastPass service to all faculty, staff, and students.

  • You should use two-factor or multi-factor authentication on any account that offers it. This is the best way to prevent your accounts from being misused, and it is increasingly available across an ever-increasing number of services wesbites including financial websites, social apps, and even gaming sites like Steam.

Filter by label (Content by label)
showLabelsfalse
max10
showSpacefalse
cqllabel in ( "passcode" , "passphrase" , "password" , "passwords" ) and space = "IKB"

...