Apply rate limiting to login pages/portals
未關閉
- 主要語言
- 沒有語言資料
- 星號
- 10
- 分支
- 5
- PR 合併指標
- 30 天內沒有已合併 PR
描述
>Draft CIS Benchmark 1.1.9
## Description
Login pages should be rate limited to increase resiliency against brute force attempts. This is configured via the following parameters: limit\_req limit\_req\_zone Can further be combined with either the default 'limit\_req' and 'limit\_req\_zone' configurations, or have additional (further limited) values for these login portals
## Rationale
Limits the rate of attack on forms that provide system logon capabilities
## Remediation
None provided
## Audit
None provided
貢獻指南
評估
這個 Issue 還沒有評估資料。