DominusExult posted on Sep 30, 2017 11:53:02 PM - Report post
Heya, New user here and I ran into a curios problem with password length: Password length is limited to 15 characters BUT when you sign up you can enter longer passwords. These will be cut off at character 15 and saved like that. No warning about that and no way to tell that this happened. When you later want to log in only the 15 character long pass is valid. If you enter the password you think you have (>15) you are entering an invalid password as in the login the passes aren't cut off at character #15.
Solution: check password length on sign up (and maybe password change later?) so this doesn't happen.
Besides the point but also a bit worrisome: You DO have a password recovery system which helped me out nicely, but shows that the passes are safed less secure. In a more secure password management you shouldn't be able to retrieve the actual password. Hence the reason why you can only reset the password in many other cases.
ELITE
Taurusplopp posted on Oct 01, 2017 12:04:52 AM - Report post
The sign up page already has a note about that -> Link
[Edited by moderator Taurusplopp, 10/1/2017 12:07:16 AM]
Good for health, bad for education.
INACTIVE
DominusExult posted on Oct 01, 2017 12:10:08 AM - Report post
Yes, should have written there is a notice about that. What I meant is that the sign up (and password change?) shouldn't *allow* more than 15 characters. Same as it checks for capital caracter and (lack of) numbers. Because this way you can enter more than 15 characters and this long password is seemingly accepted.
(And yes, I didn't pay attention as I normally don't use that long passwords)
AUTHOR
Nevermore posted on Oct 01, 2017 2:17:03 AM - Report post
The password entry fields on both signup and change password are restricted to 15 characters. I can't enter more than 15 characters on any of them.