logto
logto copied to clipboard
feature request: Is it possible to set rate limitation on user login?
So that we can block possible brute force password cracking
For Logto Cloud we've setup firewalls. For Logto OSS we do have a plan on enhanced security on 23H2.
This will be at least somewhat solved with #1751 (depending on the implementation) For now you could set up your own limiting rules with the reverse proxy of your choice
We are implementing a default rate limiter. Customization may come later.