password length won't change, since 20 really is enough.
to make it completely impossible to guess, just have your login name different from your display name. i _NEVER_ allow a username of 'admin' or 'administrator' either. those are the 1st usernames a hacker will probably try.
anyone hacking will never get the username ( login name ) right, so the password threshold will never be met.
also, if you generate a strong password ( many generators out there ) you will never be compromised.
i also use a password manager to save all these unguessable things in a nice lockbox.