Jump to content
Sign in to follow this  
Revo

Block Bruteforcing

Recommended Posts

implement automatic temporary bans (10minutes) if an accounts password was entered wrong 10 times within 10 minutes.

Share this post


Link to post
Share on other sites
28 minutes ago, Mimma said:

Good suggestion, but should be after 3 times already.

why? brute force tries many thousands of passwords to get into an account, so temp banning after 3 or 10 does not really make a difference to it.

on the other hand, ppl tend to forget or misstype their password 3 or more times very frequently, so banning them after 3 failed attemps will cause them a lot more trouble. 5+ sounds reasonable

Share this post


Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
Sign in to follow this  

×