2010-2Q: SIMPLer: Login Improvements
The SIMPLer and Master Portal login system has been updated to help improve the security of the system. The changes that have been applied to the system are described below:
1) Added a “captcha” to prevent automated attacks. The captcha will be displayed after three consecutive unsuccessful login attempts by a user, and will be required until that user has successfully logged in to the system (Fig 1).
Fig 1. “Captcha” on SIMPLer login page
2) When a new SIMPLer account is created, the user will be forced to change their password during their first login (Fig. 2). Users who forgot their password and had it reset by the system (by using the “Forgotten your user ID or password?” link) will also be forced to change their password during their next login.
Fig. 2. Form to modify user's password
3) After 10 consecutive unsuccessful login attempts by a user, the operator will receive an email with details of the failed attempts. The email will list the IP address from which those attempts were initiated. The operator can contact Azotel Support (email@example.com) to request that suspicious IP addresses are blocked.
4) The Master Portal has been updated in the same manner as described above, i.e. it will display the “captcha” after 3 successive failed login attempts by a user, and will force new users to modify their password. Functionality to reset a user's password has been added to the Master Portal, as it was not available there before (Fig. 3).
Fig 3. Master Portal login updates
Azotel | River House | Blackpool Park | Cork | Ireland
US +1-312-239-0680 | IE +353-21-234-8100 | UK +44-207-193-4170 | SA +27-11-083-6900