Option to block anonymous logins from sending s2s packets

Description

As a measure to help mitigate DOS/SPIM style attacks, Openfire should have a property option that prevents anonymous logins from sending server 2 server packets. This would prevent an anonymous login from spamming another federated server. It would not stop the user from spamming users on the local server.

Environment

None

Activity

Show:

Daryl Herzmann December 20, 2016 at 3:52 PM

Punting to 4.2, a related change to prevent blacklisted outbound s2s hosts from consuming available threads helped in this general area of spammers

Fixed

Details

Assignee

Reporter

Labels

Components

Fix versions

Affects versions

Priority

Created October 28, 2016 at 2:22 PM
Updated September 7, 2019 at 6:38 PM
Resolved November 3, 2017 at 5:56 PM

Flag notifications