Apply rate limiting to login pages/portals
Offen
- Vorherrschende Sprache
- Keine Sprachdaten
- Sterne
- 10
- Forks
- 5
- PR-Merge-Kennzahlen
- Keine gemergten PRs in 30 T.
Beschreibung
>Draft CIS Benchmark 1.1.9
## Description
Login pages should be rate limited to increase resiliency against brute force attempts. This is configured via the following parameters: limit\_req limit\_req\_zone Can further be combined with either the default 'limit\_req' and 'limit\_req\_zone' configurations, or have additional (further limited) values for these login portals
## Rationale
Limits the rate of attack on forms that provide system logon capabilities
## Remediation
None provided
## Audit
None provided
Beitragsleitfaden
Bewertung
Dieses Issue wurde noch nicht bewertet.