Password Managers
|
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
I bought the highly rated YubiKey and found it to be very difficult to actually set it up. There’s no real description on how the thing works much less any real documentation on how to set it up. Also, it’s limited to certain popular websites.
I then tried several password managers like LastPass. This software is fraught with difficulties. Though LastPass can automatically setup passwords, it has problems with a lot of the less popular websites. And, talk about bug filled software.
If I were going to use one of these password managers, it would be a good idea for me to go through introducing the manager to each web site using the existing credentials making sure it works with each site. Then, later on, change each site’s password and verifying the change on all devices.
Easy To Use
There's really no all-in-one solution that is easy to use. The problem is, once again, there are no real standards. Providers like DashLane, LastPass NordPass and the others is they all rely upon somewhat static webpages and links. Most website’s login can appear on different master pages which may inherit the login dialog.
The only way of getting around all this mess is for providers to have rooms full of data clerks scanning every website for any changes.
On my original software I wrote, I included a function that if a login page did change, it would indicate that it couldn’t find the user and password fields. I would then reteach it what fields to look for.
The problem is, the APIs I used were from a hideously expensive software package (Segue's SilkPerformer) that was used by large companies to test their websites.
But for the average person – most people are going to be hard pressed to setup a reasonably secure password manager. Everyone of these are going to byte (bite) the user in the butt.
This is may be where government might have to come into play. Either providers are going to standardize login credentials and methodologies or the government is going to … lay down the law.