View Single Post
Old 04-06-2004, 04:38 PM  
TheSaint
Confirmed User
 
Join Date: Jun 2003
Location: Everywhere at once
Posts: 991
I've said this before but the best solution is to do nothing, usually.

I get 2-3 attacks a day sometimes of up to a million password attempts. As long as you enforce random passwords they all fail.

Its actually cheaper in cpu and I/O cycles for most sites to do nothing. The products that try to block proxy attacks usually use more bandwith than just ignoring the problem, and they introduce the real possibility of blocking a legitimate customer.
__________________
I have no signature
TheSaint is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote