#3891 - Brute-force login attempt protection

This is a spacer post for a website comment topic. The content this topic relates to: #3891 - Brute-force login attempt protection
Just noting that this feature is sometimes called "account lockout".
I kind of think this is a lot less necessary if the user just implements standard rate limiting, which Composr supports (_config.php setup).

Sure this feature request can protect against DDOSs, but I think if a site is getting DDOSed then they should be able to afford some proper investment in network/system-level security rules (e.g. fail2ban).

That said, I still like this request.
0 guests and 0 members have recently viewed this.