Comment Geo Blocking & disable if failed ~ 50 times (Score 1) 54
1. Geo-blocking. Attacks against my server come from three primary countries; why can I block those countries (easily)?
(Hand in had with this: Block all VIP (rogue) servers. The list those is growing too)
2. If "someone" tries 60 log in attempts in 50 seconds; there is a good chance "they" are not a person; block them.
Does anyone look at their {server/client} access log files anymore? I see the same brute force attacks against my server multiple times every day. Why not -- when the first one (hack) attempts; block that IP from accessing my server (ever) again? When common methods of attack are attempted; when the first one of 20-50 different attacks are tried; block all of the rest. Share that blocked IP with everyone else so everyone will know that address is a bad actor (or open server/client) - that needs to be 'fixed'.