No Rate Limiting

No Rate Limiting

Steps I took leading up to the issue
For example:

  1. Go to ‘/index.php/index/login/lostPassword’
  2. Click on ‘Enter register Email’
  3. Scroll down to 'Always Send Email ’
    5 i want Restrict user only send 5 time forgot password used

What application are you using?
For example, OJS 3.1.1.4

Please See PFA

Hello @rajeshsingh,

Please note that the version of OJS that you’re using is no longer supported by PKP. I recommend that you upgrade to the newest version of OJS, as it is possible that your issue will be resolved by upgrading. However, other community members may wish to offer assistance.

Upgrading instructions are available in the PKP Administrator’s Guide and as part of our [Upgrade Guide] (https://docs.pkp.sfu.ca/dev/upgrade-guide/).

Information about the latest version of OJS can be found on the PKP Website

-Roger
PKP Team

Hi @rajeshsingh,

While OJS doesn’t include rate limiting out of the box, it can be implemented using a server-side security tool such as fail2ban or mod_security.

Regards,
Alec Smecher
Public Knowledge Project Team

This topic was automatically closed after 9 days. New replies are no longer allowed.