Log in

View Full Version : Mini Mods - [GabzLab] Strong Password Required System ( vB4.2.2 )


Gabz
12-13-2014, 10:00 PM
Strong Password Required


Info
Hello everyone, I am assuming that this mod is a sort of "update" that I wanted to add to the Mod Eric called Minimum Password Length I have tried to contact to inform him of this, but of course I thank him for having built the main mod

https://vborg.vbsupport.ru/showthread.php?t=264515

Featured
This change adds the function to force the user to enter a strong password during registration or while trying to change their user panel

It's targeted for forums that have private access for the system of account security is more reliable.

To avoid "crack" paying accounts.

Additional features are:

(+) Option in the admin panel to enable the "Alphabet mode" that involves the use of complex passwords containing uppercase, lowercase characters and scpeciali

(+) Option regarding the insertion of words not allowed in the user's password

Example: password, hello, pass, psw eccecc


Screenshot

https://vborg.vbsupport.ru/external/2015/01/29.jpg


Strong Password Required System 1.0.4 - Update Release

Bug Fixes :

(+) Whitespace as password bug fixed


(+) Permission to use denied words when their length is less than the half of the effective password length

I ask you please to test it on earlier versions of vBulletin and let me know if they work properly. Thanks

Gabz

Gabz
12-14-2014, 03:53 PM
Strong Password Required System 1.0.4 - Update Release

https://vborg.vbsupport.ru/attachment.php?attachmentid=153176&d=1440277221

Bug Fixes :

(+) Whitespace as password bug fixed


(+) Permission to use denied words when their length is less than the half of the effective password length

I ask you please to test it on earlier versions of vBulletin and let me know if they work properly. Thanks

birliksan
12-15-2014, 09:35 AM
Thanks for plugin. Installed

Gabz
12-15-2014, 01:53 PM
Thanks for plugin. Installed

Version used? :)

Thanks!

davidg
12-30-2014, 06:27 PM
Are u updating the 3.8 version to ?

EvoDarrenshan
12-31-2014, 11:06 AM
Alright some bugs;

Firstly if a user sets a strong password eg Qw3rt6252625421234 it won't permit it as "1234" is a banned keyword.

Secondly can change the settings so it enforces one capital or one number instead of a set one like "2 characters in capitals or/and lowercase and 2 numbers"

Maybe have it so you can generate a strong password as a feature.

birliksan
01-05-2015, 09:54 PM
There are vulnerabilities in plugins. When entering a new password, accept without entering a password. ( modify password section)

http://i.hizliresim.com/4ZP9k0.png
http://i.hizliresim.com/n5RyAa.png

Gabz
02-18-2015, 07:36 PM
Are u updating the 3.8 version to ?

Alright some bugs;

Firstly if a user sets a strong password eg Qw3rt6252625421234 it won't permit it as "1234" is a banned keyword.

Secondly can change the settings so it enforces one capital or one number instead of a set one like "2 characters in capitals or/and lowercase and 2 numbers"

Maybe have it so you can generate a strong password as a feature.

There are vulnerabilities in plugins. When entering a new password, accept without entering a password. ( modify password section)

http://i.hizliresim.com/4ZP9k0.png
http://i.hizliresim.com/n5RyAa.png


Perfect, we are working on a new version. If you have other reports I can only thank you :)

Greetings from Italy :cool:

kerrghann
07-27-2015, 07:44 PM
Considering using this feature, however, I was wondering if it was updated to remove the vulnerabilities?

Gabz
08-22-2015, 07:02 PM
Alright some bugs;

Firstly if a user sets a strong password eg Qw3rt6252625421234 it won't permit it as "1234" is a banned keyword.

Secondly can change the settings so it enforces one capital or one number instead of a set one like "2 characters in capitals or/and lowercase and 2 numbers"

Maybe have it so you can generate a strong password as a feature.

There are vulnerabilities in plugins. When entering a new password, accept without entering a password. ( modify password section)

http://i.hizliresim.com/4ZP9k0.png
http://i.hizliresim.com/n5RyAa.png

Considering using this feature, however, I was wondering if it was updated to remove the vulnerabilities?

All bug are now fixed :)

https://vborg.vbsupport.ru/showpost.php?p=2527174&postcount=2

Release about 1.0.4