reimandlab / ActiveDriverDB

ActiveDriverDB
GNU Lesser General Public License v2.1
12 stars 3 forks source link

Improve login system: adjust message and force delay in consecutive login attempts #134

Closed krassowski closed 6 years ago

krassowski commented 6 years ago

There should be one message for both known and unknown addresses. Consecutive, failed login attempts from a single host or to the same account should result in exponentially-like deferred responses to prevent brute-force attacks.