I suggest to have an option in the authentication settings that disables the account after X failed logins. (kind of fail2ban)
Announcement
Collapse
No announcement yet.
security : lockout after x login attempts
Collapse
X
Comment