osTicket v1.10 (stable) and Maintenance Release v1.9.15 are now available! Go get it now
Brute Force attack on the Staff login page
Hi guys, loving the software so far but just have a question.
I had just made my ticket system live on forums and within half an hour I had some one try to brute force my staff/client login page (they were not successful and when I asked him about it he told me he was "testing" it (Was a former admin of the forums) He was able to do about 418 attempts in 2 minutes, is there anyway I can stop such things in the future?
I have the maximum amount of attempts set to 2 and a 10 minute wait but seemed to do nothing.