globaleaks / GlobaLeaks

GlobaLeaks is free, open source software enabling anyone to easily set up and maintain a secure whistleblowing platform.
https://www.globaleaks.org
Other
1.21k stars 267 forks source link

It should be possible to configure thresholds for the Anomaly/DoS limits protections #1410

Open evilaliv3 opened 9 years ago

evilaliv3 commented 9 years ago

At the end of the implementation of the Anomaly/Anti DoS protections we should keep in mind that it would be useful to configure for the admin to refine thresholds for the Anomaly/DoS limits protections.

This ticket is to keep track of those activities.

Let's consider this as wish list, as it would be a waste of time to refine the DB now that the feature is still under ongoing evaluation.

vecna commented 9 years ago

it is not the same of #1409 ?

evilaliv3 commented 9 years ago

right @vecna; i'm moving here under your suggestions so that we can keep track here of the variables needed.

i would not address such a db addition now as i think it would be better to wait for the feautures to be finalized and evaluated.

evilaliv3 commented 9 years ago

Here follows the first suggestions of DB edits by @vecna that were first defined in ticket https://github.com/globaleaks/GlobaLeaks/issues/1410

New entry for the DB

This values can be part of the %KeywordTemplate% and makes email more detailed.

Failed login alarm/blocks.

They has to be tested, has to be implemented #825 and put Login as part of the Token+Captcha+Hashcash stuff, but beside that side, also the values:

can be put in an Admin table.

If Anomaly check get refactored:

evilaliv3 commented 8 years ago

screenshot from 2015-11-02 15 37 04

here you go @fpietrosanti !

from tomorrow remember to adjust this settings on the new setups.

vodkina commented 8 years ago

@evilaliv3, estimate for this issue is set at 13. Please, agree or update accordingly