Forum Discussion
Brute Force Prevention For Mobile Applicaiton
Hi ,
what kind of brute force attacks do you expect on this authentication method?
You could configure the BIG-IP to validate the JWT token. I am guessing now - is the mobile app accessing some kind of API and the JWT is used for authentication? Then maybe you want to look at APM and API Protection. You can do token validation and rate limiting with API Protection.
Link: API Protection Concepts
Another good read on JWT is this one: JWT: A How Not to Guide
I hope this is a good starting point for you.
KR
Daniel
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com