Joel on Software
Feb 24: Miami:
Future of Web Apps

Wanted: Developer at IMC Chicago (Chicago, IL 60606). See this and other great job listings at jobs.joelonsoftware.com.

Password management finally possible


This item ran on the Joel on Software homepage on Thursday, September 11, 2008

Now that DropBox is shipping, there's finally a good way to manage all your passwords. This system works no matter how many computers you use regularly; it works with Mac, Windows, and Linux; it's secure; it doesn't expose your passwords to any internet site (whether or not you trust it); it generates highly secure, random passwords for each and every site, it's fairly easy to use once you have it all set up, it maintains an automatic backup of your password file online, and it's free.

  1. Sign up for DropBox (note unfortunate URL: getdropbox.com). This gives you a folder on your computer that can, magically, be synchronized onto every computer you use. Whenever you change a file on one computer, the change is automatically propagated to your other computers.
  2. On all your Windows computers, install PasswordSafe. This is a little program that maintains an encrypted password file for you for all the sites you visit regularly. It will even generate long, complicated passwords full of special characters. The file itself is encrypted... if someone gets their hands on it, it's worthless without the master password you created for it. Store the file in your DropBox folder, of course.
  3. On all your Macintosh and Linux computers, install Password Gorilla. This works just like PasswordSafe and uses the same file format.

That's really all there is to it. There is one optional step:

  1. Log on to all your bank accounts and change that "abcd" password to some long 16 digit, unique, secure password that PasswordSafe makes up for you.

 



Oh, and by the way: My company, Fog Creek Software, has paid internships in software development for qualified college students. They're in New York City. Free housing, lunch, and more. And you get to work on real, shipping software with the smartest developers in the business.

About the Author: I’m your host, Joel Spolsky, a software developer in New York City. Since 2000, I've been writing about software development, management, business, and the Internet on this site. For my day job, I run Fog Creek Software, makers of FogBugz—the smart bug tracking software with the stupid name, and Fog Creek Copilot—the easiest way to provide remote tech support over the Internet, with nothing to install or configure.

Enter your email address to receive a (very occasional) email whenever I write a major new article. You can unsubscribe at any time, of course.

Email:

 
Home | Email | Bug Tracking Software | Remote Assistance | Complete Archive