Mercurial > prosody-modules
view mod_limit_auth/README.md @ 6317:7b693a5539ad
mod_auth_http_async: Update documentation
The required async APIs were included in 0.10.0, but at the time of this
writing we only consider 0.12.x and later supported.
The fallback sync API would have made it work with even earlier
versions, but I don't remember specifically and it doesn't matter.
| author | Kim Alvefur <zash@zash.se> |
|---|---|
| date | Tue, 02 Sep 2025 21:32:01 +0200 |
| parents | fe081789f7b5 |
| children |
line wrap: on
line source
--- summary: Throttle authentication attempts with optional tarpit ... Introduction ============ This module lets you put a per-IP limit on the number of failed authentication attempts. It features an optioanal [tarpit](https://en.wikipedia.org/wiki/Tarpit_%28networking%29), i.e. waiting some time before returning an "authentication failed" response. Configuration ============= ``` {.lua} modules_enabled = { -- your other modules "limit_auth"; } limit_auth_period = 30 -- over 30 seconds limit_auth_max = 5 -- tolerate no more than 5 failed attempts -- Will only work with Prosody trunk: limit_auth_tarpit_delay = 10 -- delay answer this long ``` Compatibility ============= Requires 0.9 or later. The tarpit feature requires Prosody trunk.
