[wp-trac] [WordPress Trac] #35817: Force users to set strong passwords

WordPress Trac noreply at wordpress.org
Thu Feb 8 15:55:49 UTC 2024


#35817: Force users to set strong passwords
------------------------------------+------------------------------
 Reporter:  ericlewis               |       Owner:  (none)
     Type:  enhancement             |      Status:  new
 Priority:  normal                  |   Milestone:  Awaiting Review
Component:  Login and Registration  |     Version:
 Severity:  normal                  |  Resolution:
 Keywords:  2nd-opinion close       |     Focuses:  ui
------------------------------------+------------------------------

Comment (by knofte):

 Replying to [comment:20 jrchamp]:
 > Systems should be "secure by default", not "secure when you install the
 right plugin".

 Totally agree with this. We manage some 100+ WP sites. The fact that we
 have to install a plugin to get a longer/more complex password than 12
 characters for all the Administrators here is insane. Plugins are not a
 solution to every problem, and basic security Should be part of core for
 any application. DB already supports it, we just need the implementation
 for Admin to set min-required pass length.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/35817#comment:23>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list