You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Is your feature request related to a problem? Please describe.
Aside from built-in security features, we probably want:
Protection against (D)DoS attacks
Protection against Brute Force attacks
Protection against Spam
Describe the solution you'd like
We do not want to build in all of these protections in Kratos.� Many protection mechanisms need to be fine-tuned to fit in the environment they're used in. For example, what a small website might see as "DDoS" is just traffic on a normal day on another site.
We should therefore elaborate on security patterns required when running ORY Kratos anywhere.
Describe alternatives you've considered
Build in these security patterns in ORY Kratos.
Additional context
The cloud service will have best-practices for brute-force and similar attacks in place.
The text was updated successfully, but these errors were encountered:
aeneasr
changed the title
Elaborate on security practices
Elaborate on security practices against DoS and Brute Force
Dec 9, 2019
Is your feature request related to a problem? Please describe.
Aside from built-in security features, we probably want:
Describe the solution you'd like
We do not want to build in all of these protections in Kratos.� Many protection mechanisms need to be fine-tuned to fit in the environment they're used in. For example, what a small website might see as "DDoS" is just traffic on a normal day on another site.
We should therefore elaborate on security patterns required when running ORY Kratos anywhere.
Describe alternatives you've considered
Build in these security patterns in ORY Kratos.
Additional context
The cloud service will have best-practices for brute-force and similar attacks in place.
The text was updated successfully, but these errors were encountered: