Page MenuHomePhabricator

Ban 10 most popular passwords on Persian Wikipedia
Closed, ResolvedPublic

Description

Per an RFC in fa.wp. We need to ban 10 most popular password on fa.wp:

$wgPasswordPolicy['policies']['default']['PasswordCannotBePopular'] = 10;

Related Objects

StatusSubtypeAssignedTask
ResolvedLadsgroup

Event Timeline

Restricted Application added subscribers: JEumerus, Dereckson, Matanya. · View Herald Transcript

Change 321093 had a related patch set uploaded (by Ladsgroup):
Ban ten monst popular passwords from fawiki

https://gerrit.wikimedia.org/r/321093

I'll deploy this in Mondays Security slot if that's ok? Unless you need/want it deploying before that...

I wanted to deploy it in SWAT time but that doesn't really matter. It would be nice. Thanks.

I wanted to deploy it in SWAT time but that doesn't really matter. It would be nice. Thanks.

If you can be about to get it done in SWAT time, that's fine, if not, I'll make sure it gets done on Monday anyway :)

Why are we doing this project specific? will it break unified accounts on other projects?

Change 321093 merged by jenkins-bot:
Ban ten most popular passwords from fawiki

https://gerrit.wikimedia.org/r/321093

Mentioned in SAL (#wikimedia-operations) [2016-11-14T19:40:15Z] <thcipriani@tin> Synchronized wmf-config/CommonSettings.php: SWAT: [[gerrit:321093|Ban ten most popular passwords from fawiki (T150570)]] (duration: 00m 46s)

Why are we doing this project specific? will it break unified accounts on other projects?

Is there an answer to this?

The effect on sul is you will be prompted to change your password if you log in directly on fawiki. You will not be prompted on other wikis. You can change your password back to the bad one on other wikis. You will not be prompted when autologged in on fawiki

It was only done on fawiki out of concern we would need some sort of community consultation to do it globally.

Restricted Application added a subscriber: Huji. · View Herald TranscriptOct 16 2020, 5:40 PM