[TYPO3-english] Typo3 BE login security

Pero Matic takoje at takoje.hr
Thu Mar 25 15:34:13 CET 2010


"Steffen Müller" <typo3 at t3node.com> wrote in message 
news:mailman.1.1269527149.12185.typo3-english at lists.typo3.org...
> Hi.
>
> On 24.03.2010 22:46 Pero Matic wrote:
>> IPs. I found nice extension that can disable account after n wrong u/p 
>> attempts,
>
> Bad idea, it opens the doors for DOS attacks.

You mean if someone intentionaly wants to block someones account buy giving 
false passwords?. Hm. Instead of blocking user account maybe to block IP 
after n wrong u/p combinations? Thomas extension supports this too.

Regards. 




More information about the TYPO3-english mailing list