This really depends against what attacker you want to secure your installation. 10-12 characters seems reasonable to me. Do not use something that could occur in a dictionary, also leet speak does not protect you. "p4ssw0rd" is not really more secure than "password".

Something like "ilikefedorabecauseitisthebestdistroicouldthinkof" may be okay.

So my advice is, use the longest possible, most complicated password (1) you can remember and (2) you can type fast, because you need it everytime for upgrading or other commands executed as root.