GSA / GSA/ansible-https-proxy

Apply rate limiting to login pages/portals

未关闭
#8 0 条评论 0 个 reaction 已指派 0 人 在 GitHub 查看
主要语言
没有语言数据
星标
10
派生
5
PR 合并指标
30 天内没有已合并 PR

描述

>Draft CIS Benchmark 1.1.9

## Description
Login pages should be rate limited to increase resiliency against brute force attempts. This is configured via the following parameters: limit\_req limit\_req\_zone Can further be combined with either the default 'limit\_req' and 'limit\_req\_zone' configurations, or have additional (further limited) values for these login portals

## Rationale
Limits the rate of attack on forms that provide system logon capabilities

## Remediation
None provided

## Audit
None provided

贡献指南

打开贡献指南

评估

这个 Issue 还没有评估数据。

把新 issue 发到你的邮箱

精选适合新手参与的 GitHub issue 摘要。