Password Requirements Markup Language

被引:6
|
作者
Horsch, Moritz [1 ]
Schlipf, Mario [1 ]
Braun, Johannes [1 ]
Buchmann, Johannes [1 ]
机构
[1] Tech Univ Darmstadt, Hsch Str 10, D-64283 Darmstadt, Germany
来源
关键词
D O I
10.1007/978-3-319-40253-6_26
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Passwords are the most widely used authentication scheme for granting access to user accounts on the Internet. In order to choose strong passwords, security experts recommend the usage of password generators. However, automatically generated passwords often get rejected by services, because they do not fulfill the services' password requirements. Users need to manually look up the password requirements for each individual service and configure the password generator accordingly. This inconvenience induces users not to employ password generators and rather stick to weak passwords. We present a solution that enables generators to automatically create passwords in accordance with services' password requirements. First, we introduce the Password Requirements Markup Language (PRML). It enables uniformly specified Password Requirements Descriptions (PRDs) for services. PRDs can be automatically processed by password generators and allow the generation of strong valid passwords without user interaction. Second, we present a crawler for the automatized extraction of password requirements from services' websites and the creation of the corresponding PRDs. This crawler allowed us to create PRDs of 72,124 services. Third, we describe a centralized and a decentralized approach for the provision of the PRDs to password generators. Finally, we present a password generator which uses PRDs and requires nothing but a service' URL in order to generate a strong and valid password for the service.
引用
收藏
页码:426 / 439
页数:14
相关论文
共 50 条
  • [1] RGML: A markup language for characterizing requirements generation processes
    Sidky, AS
    Arthur, JD
    28TH ANNUAL NASA GODDARD SOFTWARE ENGINEERING WORKSHOP, PROCEEDINGS, 2004, : 29 - 38
  • [2] TumorML: Concept and Requirements of an In Silico Cancer Modelling Markup Language
    Johnson, David
    Cooper, Jonathan
    McKeever, Steve
    2011 ANNUAL INTERNATIONAL CONFERENCE OF THE IEEE ENGINEERING IN MEDICINE AND BIOLOGY SOCIETY (EMBC), 2011, : 441 - 444
  • [3] A Lightweight Multilevel Markup Language for Connecting Software Requirements and Simulations
    Pudlitz, Florian
    Vogelsang, Andreas
    Brokhausen, Florian
    REQUIREMENTS ENGINEERING: FOUNDATION FOR SOFTWARE QUALITY (REFSQ 2019), 2019, 11412 : 151 - 166
  • [4] Extensible markup language
    Bray, T
    SperbergMcQueen, CM
    SGML '96 CONFERENCE PROCEEDINGS - CELEBRATING A DECADE OF SGML, 1996, : 399 - 404
  • [5] Extensible markup language
    Udell, J
    BYTE, 1998, 23 (01): : 80 - 80
  • [6] The chemical markup language
    Liao, YM
    Ghanadan, H
    ANALYTICAL CHEMISTRY, 2002, 74 (13) : 389A - 390A
  • [7] CHEMICAL MARKUP LANGUAGE
    MURRAYRUST, P
    LEACH, C
    RZEPA, HS
    ABSTRACTS OF PAPERS OF THE AMERICAN CHEMICAL SOCIETY, 1995, 210 : 40 - COMP
  • [8] The biopolymer markup language
    Fenyö, D
    BIOINFORMATICS, 1999, 15 (04) : 339 - 340
  • [9] Intensional markup language
    Wadge, WW
    DISTRIBUTED COMMUNITIES ON THE WEB, PROCEEDINGS, 2000, 1830 : 82 - 89
  • [10] Incorporating Units Markup Language (UnitsML) into AnIML (Analytical Information Markup Language)
    Jopp, Ronny
    Roth, Alexander
    Linstrom, Peter J.
    Kramer, Gary W.
    ABSTRACTS OF PAPERS OF THE AMERICAN CHEMICAL SOCIETY, 2006, 231