##// END OF EJS Templates
security: limit the maximum password lenght to 72 characters to prevent possible...
security: limit the maximum password lenght to 72 characters to prevent possible server side resource consumption attack. - bcrypt heavy computation can lead to DOS using a very long password .eg 10**8 lenght. - we allowed this on registration or on password update

File last commit:

r1:854a839a default
r2128:f22a9ea9 default
Show More
security-tips.rst
15 lines | 275 B | text/x-rst | RstLexer

Security Tips

The following section contains security tips for ensuring your |RCE| instances are configured in as secure a manner as possible.