Type |
Bug
|
Priority |
Normal
|
Assignee | |
Version |
tigase-server-8.4.0
|
Iterations
-
tigase-server-8.4.0 Closed
Related
-
Customers/carnow-inc#112 You are not authorized to access this issue
-
Customers/carnow-inc#139 You are not authorized to access this issue
Issue Votes (0)
Currently, to disable
BruteForceLocker
one has to disable it in the configuration and for each VHost, which is somewhat inconvenient. It should be possible to simply set disableBruteForceLockerBean
but currently this could lead to NPEs.All injections of
BruteForceLockerBean
should be configured withnullAllowed = true
and proper checks should be added.Add information to the documentation as well.