home
products
contribute
download
documentation
forum
Home
Forums
New posts
Search forums
What's new
New posts
All posts
Latest activity
Members
Registered members
Current visitors
Donate
Log in
Register
What's new
Search
Search
Search titles only
By:
New posts
Search forums
Search titles only
By:
Menu
Log in
Register
Navigation
Install the app
Install
More options
Contact us
Close Menu
Forums
MediaPortal 1
MediaPortal 1 Talk
Server and HTPC webconsole
Contact us
RSS
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Reply to thread
Message
<blockquote data-quote="SpudR" data-source="post: 401814" data-attributes="member: 54104"><p>I'm doing the white list thing for my remote access - I also have .htpasswd files on all web folders open to the public, but there is nothing sensitive in them.</p><p>You can go mad with security, but it soon gets in the way!</p><p>The best solution is DON'T expose yourself unnecessarily - only open the stuff you NEED to the public domain and set up a strong gatekeeper for the rest <img src="data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7" class="smilie smilie--sprite smilie--sprite1" alt=":)" title="Smile :)" loading="lazy" data-shortname=":)" /></p><p></p><p>If possible - try the M$ solution - 3 attempts, then increasing times between failed attempts (start with 30 seconds and increase with every failed attempt. reset the counter after 10 minutes of inactivity). This will stall any brute force attempts, whilst still allowing you to have some typos...</p></blockquote><p></p>
[QUOTE="SpudR, post: 401814, member: 54104"] I'm doing the white list thing for my remote access - I also have .htpasswd files on all web folders open to the public, but there is nothing sensitive in them. You can go mad with security, but it soon gets in the way! The best solution is DON'T expose yourself unnecessarily - only open the stuff you NEED to the public domain and set up a strong gatekeeper for the rest :) If possible - try the M$ solution - 3 attempts, then increasing times between failed attempts (start with 30 seconds and increase with every failed attempt. reset the counter after 10 minutes of inactivity). This will stall any brute force attempts, whilst still allowing you to have some typos... [/QUOTE]
Insert quotes…
Verification
Post reply
Forums
MediaPortal 1
MediaPortal 1 Talk
Server and HTPC webconsole
Contact us
RSS
Top
Bottom