jbenn313 / itsy-bitsy-spider

0 stars 0 forks source link

Disable user account after failed logins #2

Open jbenn313 opened 7 years ago

jbenn313 commented 7 years ago

Priority (High, Medium, Low)

High

Description

The user's account is locked after too many failed login attempts. This is intended to block brute force attacks.

Note: The customer understands that Adobe recommends strongly against implementing this feature.

Acceptance criteria

Technical considerations

Out of scope

pguasti commented 7 years ago

John, our decision is to apply the user block costomization.

Information security and superiors are aware of the risks.

We'll begin with no report, if that turns out to be necessary in the future, I'll let you know!