Posted March 09, 2016
![avatar](http://images.gog.com/de158a2de87438157280347c13aee634766a22d877b308b8bb15de3767265cac_avm.jpg)
Security experts out there recommend password selection that is generally much more complex than people choose on their own fruition, and that leaves them more vulnerable. So websites etc. test password strength based on real world security guidelines and reject passwords considered weak. If someone considers their password strong and software considers it weak, it is probably a divergence between their perception of threat and the actual real threat.
The easy way for people to solve the problem without a lot of headaches is to use a vetted password keeping application such as KeepassX (cross platform) or PasswordSafe (Windows only). Then the program can generate amazingly complex passwords with built in global and per site customizeable rules, and the user doesn't have to bother worrying about these things, letting technology solve the problem instead. Just need to remember one master password then.
That's the solution for "my password needs to be too hard". One of them anyway.