i could put the database on my 4TB NAS that way it'll be accessible to my devices but not to the internet. is that better idea.As many as you can manage. I aim for greater than 90.
Key file is useful when it comes to syncing the database. The database is the only file that needs to be synced. For increased security, you could put the key file on a removal USB drive and only insert it when you need access to the database.
There's a local copy of the encrypted database stored in your browser profile*, so you should be OK even if LastPass's servers were to go down, but if you want to be doubly/triply sure you could manually export a backup using "Tools > Export To" every so often.My only worry is dependance on the lastpass servers for all my passwords, if that went i'd have to go through every site and do a reset...
how strong? how many bits?
problem is i don't want to write down a long password and having to ask someone to get it everytime i want to login to something
i would be using a key file aswell on keepass which adds security.
I wouldn't rely on that too much - I think it's assuming a purely brute-force attack, and "Overcl0ckers!" isn't a truly random password. my1login reckons it's "medium" and would fall in 26 hours:Check here: https://www.grc.com/haystack.htm
Something as simple as Overcl0ckers! would take a "Massive Cracking Array (Assuming one hundred trillion guesses per second)" 1.65 hundred centuries to crack.
Hmm, using that password is like locking your front door, but leaving the key under the mat.
Your password is of medium strength because it contains 3 dictionary words.
I wouldn't rely on that too much - I think it's assuming a purely brute-force attack, and "Overcl0ckers!" isn't a truly random password. my1login reckons it's "medium" and would fall in 26 hours:
This is quite an interesting read: http://www.dansdata.com/gz140.htm
My LastPass master password is 26 characters.My Lastpass one is over 16 characters long, still no idea how I manage to remember it!![]()
tbh I wouldn't of put your real password on that site to check.My LastPass master password is 26 characters.
It's not completely random, but there's enough randomness and non-obvious substitutions to make it pretty safe - according to my1login, it would take 2 hundred trillion years to crack it, which is well into the Universe's degenerate era. I doubt if even Nelson Mandela will be around by then.![]()
tbh I wouldn't of put your real password on that site to check.
Dammit, I've just had a debit on my Visa account for "Teenage Russian Midget **** Gobblers." Was that you?Shh I'm getting lots of good stuff via there..![]()
i could put the database on my 4TB NAS that way it'll be accessible to my devices but not to the internet. is that better idea.
i got to about 107 bits
well my NAS automaticly makes a second copy of everything.Sounds good. Don't forget to create a backup of the database on a regular basis, just in case.