this post was submitted on 18 Jul 2025
596 points (97.5% liked)
memes
16283 readers
3095 users here now
Community rules
1. Be civil
No trolling, bigotry or other insulting / annoying behaviour
2. No politics
This is non-politics community. For political memes please go to !politicalmemes@lemmy.world
3. No recent reposts
Check for reposts when posting a meme, you can only repost after 1 month
4. No bots
No bots without the express approval of the mods or the admins
5. No Spam/Ads
No advertisements or spam. This is an instance rule and the only way to live.
A collection of some classic Lemmy memes for your enjoyment
Sister communities
- !tenforward@lemmy.world : Star Trek memes, chat and shitposts
- !lemmyshitpost@lemmy.world : Lemmy Shitposts, anything and everything goes.
- !linuxmemes@lemmy.world : Linux themed memes
- !comicstrips@lemmy.world : for those who love comic stories.
founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
Sure, I agree with you if it's a password that I expect to have that use case (e.g. streaming service, home wifi network). Most of my passwords don't though.
As a side note, assuming that they're equivalent length I would argue that a random password is more secure than a passphrase (of equal length) composed of dictionary words because it's more resistant to dictionary-based password cracking. That said, the point is moot. As xkcd has shown us, length is the main thing that matters. There's effectively no difference in practice. I always tell people "the longer the better" in either case and I recommend passphrases for secrets that have to be memorized or typed.
That said, I think an acceptable medium would be to use a passphrase, like you're suggesting, for a situation where entering it via a controller or remote is a legitimate use case. In fact, my password manager lets me pick and can generate passphrases or passwords. Not sure if that's a feature in KeePass.
For the rest of the time when I don't need the use case, I'll simply generate a long random password using my password manager. It's a faster workflow integrated into the tool itself and theoretically more secure against some attacks.