Friday, June 5, 2015

Best practices related

Creating username policies and best practices
usernames are for identification not authentication, therefore prioritizing user convenience seems sensible
Some risks to bear in mind though ...
if the username is easily guessable then it is one less piece of information an attacker requires

No comments:

Post a Comment