Print Page | Close Window

10.11 Failled Login Attempts

Printed From: Web Wiz Forums
Category: Web Wiz Web App Support Forums
Forum Name: Web Wiz Forums
Forum Description: Support forum for Web Wiz Forums application.
URL: https://forums.webwiz.net/forum_posts.asp?TID=30303
Printed Date: 31 March 2026 at 4:33pm
Software Version: Web Wiz Forums 12.08 - https://www.webwizforums.com


Topic: 10.11 Failled Login Attempts
Posted By: Ravage
Subject: 10.11 Failled Login Attempts
Date Posted: 01 May 2012 at 7:47pm
Hi
 
Just looking through the release notes and it says:
Quote 3. functions/functions_login.asp - updated to remove CAPTCHA test when incorrect login attempts get above that set in the admin area
 
I presume this is part of the SSL update (which I've not enabled yet) but could you tell me what is now supposed to happen now the captchya code has gone in this scenario - just worried about a brute force login attempt if the page never prevents someone from retrying logins?
 
We want to move to the SSL anyway (just not bought/configured the server for certification yet) but would even with SSL this behave differently?
 
Thanks in advance, Dom
 

 
 



Replies:
Posted By: WebWiz-Bruce
Date Posted: 01 May 2012 at 8:19pm
The removal of CAPTCHA security images has nothing to do with the new support for SSL.

The CAPTCHA security images has been removed as CAPTCHA is no longer a valid form of defence as sophisticated OCR software now used by hackers and spammers can read CAPTCHA codes that even a person can not read.

Instead Web Wiz Forums now includes now tools that include encrypted one time form fields, session tokens, and other methods to prevent automated programs such as brute force hacking tools.


-------------
https://www.webwiz.net/web-wiz-forums/forum-hosting.htm" rel="nofollow - Web Wiz Forums Hosting
https://www.webwiz.net/web-hosting/windows-web-hosting.htm" rel="nofollow - ASP.NET Web Hosting


Posted By: Ravage
Date Posted: 01 May 2012 at 8:43pm
Ok so does that mean the User Settings->Failled Login Attempts field is now a legacy unused field as for the life of me Ive just tried 15 different passwords and we got it set at only 3 - sorry if Im missing something here


Posted By: WebWiz-Bruce
Date Posted: 01 May 2012 at 9:32pm
There is no CAPTCHA now in Web Wiz Forums, the setting now only sets a new security ID code for the account once the login limit is reached, which makes cracking an account more difficult and any auto login cookies for the account invalid.

-------------
https://www.webwiz.net/web-wiz-forums/forum-hosting.htm" rel="nofollow - Web Wiz Forums Hosting
https://www.webwiz.net/web-hosting/windows-web-hosting.htm" rel="nofollow - ASP.NET Web Hosting


Posted By: Ravage
Date Posted: 02 May 2012 at 10:35pm
Thanks Bruce:
Even though its not visible whats going on, its nice to know its properly handled - thanks for the explanation :)


Posted By: WebWiz-Bruce
Date Posted: 03 May 2012 at 9:38am
I personally prefer the new methods as they are less intrusive, and also allows the forum to be used by partially sighted people which allows the forum to comply with disability laws that are in force in many countries.

-------------
https://www.webwiz.net/web-wiz-forums/forum-hosting.htm" rel="nofollow - Web Wiz Forums Hosting
https://www.webwiz.net/web-hosting/windows-web-hosting.htm" rel="nofollow - ASP.NET Web Hosting



Print Page | Close Window

Forum Software by Web Wiz Forums® version 12.08 - https://www.webwizforums.com
Copyright ©2001-2026 Web Wiz Ltd. - https://www.webwiz.net