Kuchinja mapassword nguva nenguva itsika yechinyakare, yave nguva yekuisiya

Mazhinji maIT masisitimu ane mutemo unosungirwa wenguva nenguva kuchinja mapassword. Izvi zvimwe ndizvo zvinovengwa uye zvisingabatsiri zvinodikanwa zvekuchengetedza masisitimu. Vamwe vashandisi vanongochinja nhamba kumagumo sehupenyu hack.

Kuita uku kwakakonzera kusagadzikana kwakawanda. Zvisinei, vanhu vaifanira kutsungirira, nokuti izvi nokuda kwokuchengeteka. Zvino zano iri harina basa zvachose. Muna Chivabvu 2019, kunyangwe Microsoft yakazobvisa chinodiwa chekuchinja password kubva padanho rekutanga rekuchengetedza zvinodiwa zvemunhu uye server shanduro Windows 10: pano. official blog statement ine runyorwa rwekuchinja kune shanduro Windows 10 v 1903 (ona mutsara Kudonhedza iyo password-expiration policy inoda nguva nenguva shanduko yepassword) Mitemo pachayo uye maitiro ehurongwa Windows 10 Shanduro 1903 uye Windows Server 2019 Chengetedzo Baseline yakabatanidzwa mukiti Microsoft Security Compliance Toolkit 1.0.

Unogona kuratidza magwaro aya kuvakuru vako woti: nguva dzachinja. Mandatory password shanduko ndeyekare, ikozvino inenge iri pamutemo. Kunyangwe kuongororwa kwekuchengetedza hakuchatarise chinodiwa ichi (kana chakavakirwa pamitemo yepamutemo yekuchengetedzwa kwekutanga kwemakomputa eWindows).

Kuchinja mapassword nguva nenguva itsika yechinyakare, yave nguva yekuisiya
Chidimbu cherondedzero ine ekutanga kuchengetedza marongero e Windows 10 v1809 uye shanduko muna 1903, uko inoenderana nepassword yekupedza nguva mitemo isingachashande. Nenzira, mushanduro itsva, maneja uye maakaundi evaenzi anodzimwawo nekukasira

Microsoft inotsanangura zvine mukurumbira mune blog positi nei yakasiya mutemo wekuchinjisa password: "Periodic password kupera nguva inodzivirira kubva pamukana wekuti password (kana hashi) ichabiwa mukati mehupenyu hwayo uye kushandiswa nemunhu asina mvumo. Kana iyo password isina kubiwa, hapana chikonzero chekuishandura. Uye kana uine humbowo hwekuti password yabiwa, zviri pachena kuti unenge uchida kuita chimwe chinhu nekukasika pane kumirira kusvika yapera kuti ugadzirise dambudziko."

Microsoft inoenderera mberi ichitsanangura kuti mumamiriro ezvinhu anhasi hazvina kukodzera kudzivirira kubiwa kwepassword uchishandisa nzira iyi: β€œKana zvichizivikanwa kuti password inogona kubiwa, mangani mazuva inguva inotenderwa yekubvumidza mbavha kushandisa password yakabiwa? Iko kukosha kwekutanga mazuva makumi mana nemaviri. Izvozvo hazviratidzike senguva refu inosekesa here? Chokwadi, ino inguva refu kwazvo, uye zvakadaro hwaro hwekutanga hwakaiswa pamazuva makumi matanhatu - uye kare pamazuva makumi mapfumbamwe - nekuti kumanikidza kubuda nguva zhinji kunounza matambudziko ako. Uye kana password isiri kubiwa, saka uri kuwana aya matambudziko pasina rubatsiro. Kunze kwezvo, kana vashandisi vako vakagadzirira kutengesa password yeswiti, hapana mutemo wekupedza password uchabatsira. "

Zvimwe

Microsoft inonyora kuti mitemo yayo yekutanga yekuchengetedza inoitirwa kuti ishandiswe nemabhizinesi anochengetedzwa zvakanaka, ane hanya nekuchengetedza. Ivo zvakare vanoitirwa kupa nhungamiro kune vaongorori. Kana sangano rakadaro rakashandisa mazita epassword akarambidzwa, multi-factor authentication, password brute force attack yekuona, uye kusinganzwisisike kuedza kuona kupinda, inodiwa nguva nenguva kupera kwepassword? Uye kana vasina kuita matanho ekuchengetedza echizvino-zvino, kupera kwepassword kunovabatsira here?

Mafungiro eMicrosoft anogutsa zvinoshamisa. Tine sarudzo mbiri:

  1. Kambani iyi yashandisa matanho echizvino-zvino ekuchengetedza.
  2. The company kwete yakaunza matanho ekuchengetedza emazuva ano.

Muchiitiko chekutanga, nguva nenguva kuchinja password hakupe mamwe mabhenefiti.

Muchiitiko chechipiri, nguva nenguva kuchinja password hakubatsiri.

Saka, panzvimbo yezuva rekupera kwepassword, unofanirwa kushandisa, chekutanga, multi-factor authentication. Mamwe matanho ekuchengetedza akanyorwa pamusoro apa: rondedzero yemapassword anorambidzwa, kuona kwesimba rehutsinye uye kumwe kusinganzwisisike kuedza kupinda.

Β«Periodic password expiration inzira yekare uye yechinyakare yekuchengetedza", Microsoft inopedzisa, "uye isu hatitendi kuti kune chero kukosha kwakakodzera kushandisirwa kune yedu yekutanga nhanho yekudzivirira. Nekuibvisa kubva pahwaro hwedu, masangano anogona kusarudza izvo zvinonyatsoenderana nezvinodiwa zvavanofunga pasina kupokana nezvatinokurudzira. ”

mhedziso

Kana kambani nhasi ikamanikidza vashandisi kuchinja mapassword avo nguva nenguva, mucherechedzi wekunze angafungei?

  1. Zvapiwa: iyo kambani inoshandisa archaic defense mechanism.
  2. Fungidziro: kambani haina kushandisa nzira dzekudzivirira dzemazuva ano.
  3. Mhedziso: mapassword aya ari nyore kuwana nekushandisa.

Zvinoitika kuti nguva nenguva kushandura mapassword kunoita kuti kambani ive inoyevedza chinangwa chekurwiswa.

Kuchinja mapassword nguva nenguva itsika yechinyakare, yave nguva yekuisiya


Source: www.habr.com

Voeg