View Single Post
Old 02-25-2013, 05:08 PM  
signupdamnit
Confirmed User
 
signupdamnit's Avatar
 
Industry Role:
Join Date: Aug 2007
Posts: 6,697
Quote:
Originally Posted by venusgal View Post
You obviously have no idea how login systems work and having the most secure system still won't stop someone from guessing your stupidly easy password, as if it was hunter2.
After X tries it should at the very least lock out the IP. Even better might be to lock out the whole account after X+X incorrect attempts and send a new password to the email on file and disable all logins until the new password is used. Not doing this make it easier to brute force.
__________________

You don't like my posts? Put me on ignore or fuck right off. I'll say what I want.
signupdamnit is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook