Announcement Announcement Module
Collapse
No announcement yet.
Throttling Page Title Module
Move Remove Collapse
X
Conversation Detail Module
Collapse
  • Filter
  • Time
  • Show
Clear All
new posts

  • Throttling

    I want to be able to throttle token requests for invalid secrets to prevent brute forcing. Can anyone point me to a reference that describes how to go about that?

  • #2
    One way (probably the most common and certainly the easiest to implement) to do it is to use a high entropy password encoder. BCrypt was basically designed for this use case.

    Comment

    Working...
    X