##// END OF EJS Templates
password-reset: strengthten security on password reset logic....
password-reset: strengthten security on password reset logic. - generate token that has special password reset role - set 10 minut expiration on the token - add some sleep to prevent bruteforcing attacks - use implicit messages to prevent user email discovery attacks

File last commit:

r927:e470191e default
r1471:9ea7077d default
Show More
rcicons.eot
0 lines | 9.1 KiB | application/vnd.ms-fontobject | TextLexer
Binary file (application/vnd.ms-fontobject)