[Coco] Tandy / Color Computer Forum Access
Wayne Campbell
asa.rand at gmail.com
Fri Mar 25 19:24:28 EDT 2011
That is a very good idea, Marc. :)
Wayne
----- Original Message -----
From: "Marc Charbonneau" <timebandit001 at gmail.com>
To: "CoCoList for Color Computer Enthusiasts" <coco at maltedmedia.com>
Sent: Friday, March 25, 2011 2:51 PM
Subject: Re: [Coco] Tandy / Color Computer Forum Access
>>> You have to make it expensive enough to crack your password that they
>>> get
>>> bored and go looking for easier targets.
>>
>> My employer mandates a "three strikes and it's locked" policy on
>> authentication attempts. Now that I think about it, most web accounts I
>> own
>> do that as well. Renders brute-force cracking tools a bit impractical.
> On my website, I just delay the "failed" answer $attempt*2 seconds.
>
> 1st try you know it failed 2 seconds later.
>
> On the 5th attempt, you have to wait 32 seconds before you know it failed.
> On the 6th, you wait 64 seconds.
>
> This is usually enough to make them go away :)
>
> --
> Coco mailing list
> Coco at maltedmedia.com
> http://five.pairlist.net/mailman/listinfo/coco
>
More information about the Coco
mailing list