Differences
This shows you the differences between two versions of the page.
Both sides previous revision Previous revision Next revision | Previous revision | ||
public:user_accounts [2021-11-02 15:06] – [Password usage tips] marp | public:user_accounts [2021-12-07 14:51] (current) – vesely | ||
---|---|---|---|
Line 3: | Line 3: | ||
---- | ---- | ||
- | Note: For Charles University Central Autentication Services (CAS) please go to [[https:// | + | {{:public: |
+ | |||
+ | Unified access to central web services for students, staff and external users with single login and password for all services. | ||
+ | |||
+ | <faicon fa fa-hand-o-right> | ||
---- | ---- | ||
- | **The CERGE-EI realm:** | + | {{: |
Every faculty and staff member as well as every student are eligible for network and email accounts. These accounts are setup by the network administrator after filling up a simple form by a new LAN user directly at the computer office on the 4th floor, room 409. ** CERGE-EI email accounts are " | Every faculty and staff member as well as every student are eligible for network and email accounts. These accounts are setup by the network administrator after filling up a simple form by a new LAN user directly at the computer office on the 4th floor, room 409. ** CERGE-EI email accounts are " | ||
Line 51: | Line 55: | ||
==== Password usage tips ==== | ==== Password usage tips ==== | ||
- | It's highly recommended to use **strong passwords**, | + | It's highly recommended to use **strong passwords**, |
- | Do **NOT** use the **same password** for multiple logins (e.g. the same password for gmail, facebook, windows domain authentification at work, dropbox etc.): when login credentials of __one of them is compromised__, | + | Do **NOT** |
It's difficult to remember a whole bunch of complex passwords, therefore it's recommended to use a password manager, for instance [[http:// | It's difficult to remember a whole bunch of complex passwords, therefore it's recommended to use a password manager, for instance [[http:// | ||
- | You can even use the **same strong password** for __multiple logins__, just add a __" | + | You can even use the **same strong password** |
- | Make sure you know **how to reset the password** for all of your websites, services, computer accounts you have. In most cases, new password activation link is send to your email filled in during registration. Some services use 2way authentification verification as most banks do, e.g. cell phone SMS. | + | Make sure you know **how to reset the password** |
- | If you __accidentally left behind your smartphone somewhere__, | + | If you __accidentally left behind your smartphone somewhere__, |
- | **Encrypt** your entire phone (e.g. Android has already added this feature), encrypt the entire disk of your laptop using windows __Bitlocker__ or __Truecrypt__ version 7.1a max. - newer versions are not considered safe. In case of theft/loss your data are safe because of encryption. | + | **Encrypt** |
- | Passwords should be **changed regularly**. Stronger password could be changed less often, anyway a rules of thumb is: "the __period of password change__ should always be __shorter than__ approx. amount of __time needed to crack it__." | + | Passwords should be **changed regularly**. Stronger password could be changed less often, anyway a rules of thumb is: "the __period of password change__ |
- | **Do not tell a password to anyone**! If you have to tell a password to somebody else e.g. in order to complete an important task, __change it immediately after the usage__ then. | + | **Do not tell a password to anyone**! If you have to tell a password to somebody else e.g. in order to complete an important task, __change it immediately after the usage__ |
- | **Do not send passwords by email!** Emails travel through internet in plain text form and it is relatively easy to capture an email. Better ways how to share a password are __SMS__ or to tell it during a __phone conversation__. | + | **Do not send passwords by email!** |
- | Do not react to the **forged emails** telling you to change your password to some of your accounts somewhere. This social technique is called " | + | Do not react to the **forged emails** |
- | **Do not write** passwords on __piece of paper__, __stickers__ etc.: anybody accessing your table can **abuse them**. | + | **Do not write** |