Forum Discussion
alert blocking ASM - brute force attack
How is your login page configured against brute force? Specifically, for your Source-Based Protection settings, are you tracking by Username, IP address, Device ID, etc.? The CAPTCHA response includes a support ID as shown here:If you are using the default Blocking Response page for Login Pages (instead of CAPTCHA) then the Support ID should also be displayed to the client. The recommendation for logging is to use a remote server which you could then configure to send emails based on certain security events.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com