From 28ff2f6848df713da8e3a3158c52d627da7a0896 Mon Sep 17 00:00:00 2001 From: Konstantin Haase Date: Thu, 19 Nov 2015 19:24:18 +0100 Subject: [PATCH] aggressive blocking on /auth/github --- lib/travis/api/attack.rb | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/lib/travis/api/attack.rb b/lib/travis/api/attack.rb index 4d91ec31..66679446 100644 --- a/lib/travis/api/attack.rb +++ b/lib/travis/api/attack.rb @@ -44,7 +44,7 @@ class Rack::Attack # Ban time: 5 hours # Ban after: 10 POST requests within five minutes to /auth/github blacklist('hammering /auth/github') do |request| - Rack::Attack::Allow2Ban.filter(request.identifier, maxretry: 10, findtime: 5.minutes, bantime: bantime(5.hours)) do + Rack::Attack::Allow2Ban.filter(request.identifier, maxretry: 2, findtime: 5.minutes, bantime: bantime(5.hours)) do request.post? and request.path == '/auth/github' end end