Re: [tryton-dev] Impact mitigation for DDoS attack

2018-01-29 Thread Cédric Krier
On 2018-01-29 12:47, Axel Braun wrote: > I would like to discuss https://bugs.tryton.org/issue5375 with all developers > involved. All developers have already commented on the issue and we all agree that the proposal is wrong, solves nothing and weakens the brute force attack protection. > In

[tryton-dev] Impact mitigation for DDoS attack

2018-01-29 Thread Axel Braun
Dear all, I would like to discuss https://bugs.tryton.org/issue5375 with all developers involved. In short, what is it about? In current implementation of the Tryton Server, each failed login attempt is written to a database table (https://bugs.tryton.org/msg24643) As a consequence, in case