View Issue Details
| ID | Project | Category | View Status | Date Submitted | Last Update |
|---|---|---|---|---|---|
| 0001312 | savapage-server | [All Projects] Security | public | 2025-09-21 17:29 | 2026-03-24 10:36 |
| Reporter | rijkr | Assigned To | rijkr | ||
| Priority | normal | Severity | feature | Reproducibility | N/A |
| Status | resolved | Resolution | open | ||
| Product Version | 1.5.0 | ||||
| Target Version | 1.7.0 | Fixed in Version | 1.7.0 | ||
| Summary | 0001312: Add rate limiting for invalid requests | ||||
| Description | IST: Failed authentications and invalid requests are not limited. SOLL: Add Rate Limiting with Token Bucket algorithm to suspend the processing of requests from an IP address when a maximum number of processing failures (unauthorized access or processing errors) has been reached within a given time period. Rate Limiting events are reported in the Admin Web App Dashboard as Real-time Activity and in the server.log. | ||||
| Tags | No tags attached. | ||||
| Date Modified | Username | Field | Change |
|---|---|---|---|
| 2025-09-21 17:29 | rijkr | New Issue | |
| 2025-09-21 17:29 | rijkr | Status | new => assigned |
| 2025-09-21 17:29 | rijkr | Assigned To | => rijkr |
| 2025-12-16 20:47 | rijkr | Target Version | 1.6.0 => 1.7.0 |
| 2026-03-24 10:32 | rijkr | Status | assigned => resolved |
| 2026-03-24 10:32 | rijkr | Fixed in Version | => 1.7.0 |
| 2026-03-24 10:32 | rijkr | Summary | Add limit for failed authentications => Add rate limiting for failed authentication and invalid requests |
| 2026-03-24 10:32 | rijkr | Description Updated | View Revisions |
| 2026-03-24 10:36 | rijkr | Summary | Add rate limiting for failed authentication and invalid requests => Add rate limiting for invalid requests |