Generate Static Password FAQ (2024)

1. What is static password?
Static password is a second password, in addition to the one you use to log in to the e-Filing portal. The difference between your e-Filing password and static password is as follows:

  • You do not have to create your static password, it is system-generated (if you choose to use static password).
  • Using static password is optional, e-Filing password is compulsory.
  • Static password is a second authentication factor, your e-Filing password is the first.

2. How is generating a static password useful?
There are various methods you can use for two-factor authentication, such as Aadhaar OTP, EVC, net banking, DSC, or QR code. These methods generally depend on good network connectivity. Static passwords are useful when you have low mobile network and cannot receive an OTP on your mobile number.

3. Do I need to create my own static password?
No. Static passwords are system-generated, and will be emailed to you on your email ID registered with e-Filing.

4. What are the rules for generating static password?

  • A total of 10 static passwords will be generated at a time and sent to your email ID registered with e-Filing.
  • From the 10 passwords generated, only one password can be used for one login, and cannot be reused. You need to select another one from the list you generated.
  • The static passwords sent to you will be active for 30 days from the date of generation.
  • Once you generate your static password, the Generate Static Password button will be disabled till all 10 passwords are consumed, or till 30 days are over, whichever comes first. On the expiry of either 10 passwords or 30 days, you will need to generate static passwords again.

5. Can I generate static passwords multiple times, or is it a one-time activity?
Yes, you can generate static passwords multiple times, but only after expiration (after 30 days from generation) or consumption of all 10 static passwords.

6. I already have an e-Filing password. Why do I need a static password?
For enhanced security, logging in to the e-Filing portal involves two-factor authentication. Two-factor authentication is a method with an additional security layer (in addition to username and password). Static password is one of the two-factor authentication methods after entering your e-Filing user ID and password.

7. What comprises a static password for e-Filing?
The e-Filing static password is a randomly generated 6-digit alphanumeric code.

8. How will I know the status of my unused static passwords?
From the left menu of your e-Filing dashboard, click "Static Password". The system checks if you have generated any static passwords in the last 30 days, and if you have consumed all 10 static passwords. If you have any unused static passwords, a message appears specifying how many passwords you have left for the remaining days out of 30. Click "Resend Static Password", and you will receive an email with the list of unused static passwords on your e-Filing registered email ID.

9. Where do I need to enter the static password?
To use a static password, you need to have generated them previously. You will need to generate static passwords again in the following cases:

  • if all 10 of your previously generated passwords are used up, or
  • if 30 days have passed since you last generated static passwords (even if you have not used all 10)

The process to use the static passwords is as follows:

  1. Go to the e-Filing home page, enter your e-Filing user ID and password.
  2. On the Verify it's you page, click Try another method.
  3. On the next page, click Static Password, then click Continue.
  4. On the Static Password page, enter your valid static password in the textbox, and log in.

10. How do I know if a particular static password has been used earlier?
You can manually keep track of the passwords you have used, or go to your Dashboard > Static Password tab > Click Resend Static Password. You will receive an email with the list of unused static passwords on your e-Filing registered email ID.

11. Is it mandatory to use static passwords?
No. You may choose other methods to secure your login, such as Aadhaar OTP, EVC, net banking, DSC, or QR code. Static password is helpful if you are in an area with low or no mobile network connectivity, where you may find it difficult to receive OTP / EVC on your mobile.

Generate Static Password FAQ (2024)

FAQs

What is an example of a static password? ›

Passphrases are long static passwords comprising words in a phrase or sentence. An example of a passphrase is “I will pass the CISSP in 6 months!” Passphrases may be made stronger by using nonsense words (replacing “CISSP” with “XYZZY,” for example), mixing case, and using additional numbers and symbols.

What is a good passphrase example? ›

The key to a good passphrase is randomness — the words you use to create a passphrase should not have an obvious connection between them. A good passphrase example is overripe-trekker-angular-envision-letter, while a passphrase like apple-peach-banana-cucumber would be much easier to crack.

What is the risk of static password? ›

Malware, phishing, shoulder surfing can be used to learn the user's password. Once the static password is caught by the attacker, he can use it within its lifetime.

How long is the YubiKey static password? ›

Static Passwords generated on a YubiKey allow for the longest passwords to be stored - they can be up to 64 characters in length.

What is 8 characters in a password example? ›

A: An 8 characters password example could be something like UBm5q9EF. It should contain a combination of at least 8 characters, including lowercase letters, uppercase letters, numbers and special symbols. Using a strong and unique password like this can help keep your information safe from hackers.

What is a strong 10 character password example? ›

A good way to create a secure password is to use at least 10 characters. Some good examples of 10 character passwords can include: “P8s^hf6HS@”, “X! 2T@Dty3Q”, “a?

What are some password examples? ›

How to Make Your Password More Secure
Weak PasswordBetter PasswordStrong Password
deltagammadeltagamm@d3ltagamm@
ilovemypiano!LoveMyPiano!Lov3MyPiano
SterlingSterlingGmal2015SterlingGmail20.15
BankLoginBankLogin13BankLogin!3
7 more rows
May 2, 2023

What is a strong passphrase? ›

A strong passphrase contains a combination of different types of characters, such as uppercase and lowercase letters, numbers, and symbols. Still, you can make your passphrase even stronger by following some of the same rules from when you learned how to create a strong password.

Which one is the most secure passphrase? ›

Use a mix of alphabetical and numeric, a mixture of upper and lowercase, and special characters when creating your unique passphrase. Use unique passwords or passphrases: You should have a unique password for each of your accounts.

What is static password? ›

What is static password? Static password is a second password, in addition to the one you use to log in to the e-Filing portal. The difference between your e-Filing password and static password is as follows: You do not have to create your static password, it is system-generated (if you choose to use static password).

What is static credentials? ›

Static Credentials refer to the permanent, unchanging user identification parameters, commonly a combination of a username and a password, used in systems requiring user authentication.

What weakens a password? ›

Common words, phrases, or easily guessable information like names, birthdates, or simple sequences (e.g., “abc123”) make a password weak. Such passwords are vulnerable to dictionary attacks, where hackers use a predefined list of common words and phrases to guess passwords.

Should I leave my YubiKey plugged in all the time? ›

Do I need to keep my yubikey plugged in all the time? A. No, you only need to insert your yubikey when you are prompted to do so during login. Leaving it plugged in could result in the yubikey being lost or damaged.

Can YubiKey replace passwords? ›

With these new capabilities, the YubiKey enables the replacement of weak username/password credentials with strong hardware-backed cryptographic key pair credentials.

What happens if a YubiKey breaks? ›

Our product's quality is top of mind for us and if your YubiKey is damaged we ask that you submit a support ticket with the following information. The order number or copy of invoice from when you purchased the YubiKey. A valid shipping address in the event we send a replacement YubiKey to you.

What is static username and password? ›

Static Credentials refer to the permanent, unchanging user identification parameters, commonly a combination of a username and a password, used in systems requiring user authentication.

What is static and dynamic password? ›

Enhanced Security: Static passwords can easily be guessed by those who have access to personal data or common knowledge about you. Dynamic passwords are more secure as they are ever-changing, making them difficult to guess.

What is an example of a dynamic password? ›

The passwords used in banking systems and sent to your smartphone to give you access to the banking application are an example of dynamic passwords. These passwords, called One-Time Password (OTP), are randomly and automatically generated by a machine to be used only once.

Top Articles
Latest Posts
Article information

Author: Mr. See Jast

Last Updated:

Views: 5847

Rating: 4.4 / 5 (55 voted)

Reviews: 94% of readers found this page helpful

Author information

Name: Mr. See Jast

Birthday: 1999-07-30

Address: 8409 Megan Mountain, New Mathew, MT 44997-8193

Phone: +5023589614038

Job: Chief Executive

Hobby: Leather crafting, Flag Football, Candle making, Flying, Poi, Gunsmithing, Swimming

Introduction: My name is Mr. See Jast, I am a open, jolly, gorgeous, courageous, inexpensive, friendly, homely person who loves writing and wants to share my knowledge and understanding with you.