[Exim] authenticators: how to prevent an unlimited number of…

Etusivu
Poista viesti
Vastaa
Lähettäjä: Ralf Hauser
Päiväys:  
Vastaanottaja: exim-users
Vanhat otsikot: Re: [Exim] main option "hosts_require_tls" unknown ?
Aihe: [Exim] authenticators: how to prevent an unlimited number of password tries thru smtp?
Hi,

When using for example a mysql query with salted/crypted password for
authentication when receiving mail via smtp (see
http://bugs.mysql.com/?id=784), how can I prevent an attacker to have
unlimited number of tries at guessing and verifying the password via exim?

Is there a way that exim could limit for example to 3 wrong passwords per
hour?

Many thanks for any hints in advance!

Ralf