Hacker Timesnew | past | comments | ask | show | jobs | submitlogin

This is why I isolate authentication to a separate application. I also implement max attempts per N minutes for IP and User. Most users once authenticated are good for the work day. Auth going down doesn't (generally) affect the work.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: