https://www.akeebabackup.com/support/admin-tools/Ticket/19665-block-ip-immediatly-on-some-attacks.html
As now attackers "delay" their attack (not as before with a big attack pack but with a timelaps between each attack), the solution to block after 3 attacks is not very efficient :
- attacks are made from changing ip,
- attacks are made 1 time, 10 mn elapse, another, 1mn, another, 15mn, etc... the same ip can attack 10 times in the same day.
Today, there is a lot of 404 attacks, DFI, and SQLi attacks, brute force attacks are not so often today.
As these attacks are "real" attacks, it could be good to have an option with :
- for these kinds of attacks, block immediatly
- for these kind of attack, allow 3 attemps
- etc...
Even if i password protect or "rename" the admin panel, the other attacks are really annoying.
To understand me, for the 2 last monthes, i have...17 523 attemps loggued in my sites !!! Try to imagine the time i loose to sort all this !!
Note a important thing : so far, all the attacks have been blocked by Admintools !
Xavier