Only allow a user 5 attempts to sign in before their account gets locked.
In order to get unlocked, they just need to interact with an email.
Technical Details
User from the same IP address submits invalid credentials for the same user 5 times within 15 minutes, the account gets blocked from signing in for 1 hour.
When the account gets blocked, an email is sent to the user with a link in case they need to access their account sooner.
Set up a route to use with the email
When the route is requested, we unblock the user's account and send them to the login page.
Description
Only allow a user 5 attempts to sign in before their account gets locked.
In order to get unlocked, they just need to interact with an email.
Technical Details