config: increased the default max-ban-score to 8 wrong password attempts

This still prevents abuse, while allowing few more attempts than 5, which
are typically easily reached through software which remembers passwords.
At the same time increase the default ban time to 20 minutes.

Signed-off-by: Nikos Mavrogiannopoulos <nmav@gnutls.org>
This commit is contained in:
Nikos Mavrogiannopoulos
2017-04-23 18:57:45 +02:00
parent 53fe6218e6
commit 0d8ee5e6a9
3 changed files with 6 additions and 4 deletions

View File

@@ -328,10 +328,10 @@ min-reauth-time = 300
# locally from an HTTP server (i.e., when listen-clear-file is used).
#
# Set to zero to disable.
max-ban-score = 50
max-ban-score = 80
# The time (in seconds) that all score kept for a client is reset.
ban-reset-time = 300
ban-reset-time = 1200
# In case you'd like to change the default points.
#ban-points-wrong-password = 10