Stop account takeover attacks (Free, Pro, and Business)
/use-cases/solutions/stop-account-takeover-attacks
Mở tutorial / guide ↗ Open tutorial / guide ↗Phần 3: Bảo mật baseline Part 3: Baseline security · Bài 2/3 Lesson 2/3
Giới hạn request theo IP hoặc cookie cho /login, /signup, OTP, search. Giảm credential stuffing và abuse. Limit requests per IP or cookie on /login, /signup, OTP, search. Reduces credential stuffing and abuse.
Rate limiting bảo vệ credential stuffing và brute force — bổ sung cho WAF signature-based rules. Rate limiting protects against credential stuffing and brute force — complementing signature-based WAF rules.
Cách triển khai Managed Rules ở Account level cũng áp dụng cho Rate Limiting Rules — ưu tiên cấu hình Account thay vì lặp lại trên từng zone. The Account-level approach for Managed Rules also applies to Rate Limiting Rules — prefer Account-level configuration over repeating rules per zone.
Nguồn: Source: Streamlined WAF deployment across zones and applications Streamlined WAF deployment across zones and applications ↗
Tutorial, solution guide và reference từ developers.cloudflare.com/resources ↗ — gợi ý theo chủ đề bài học. Tutorials, solution guides, and reference docs from developers.cloudflare.com/resources ↗ — matched to this lesson topic.
/use-cases/solutions/stop-account-takeover-attacks
Mở tutorial / guide ↗ Open tutorial / guide ↗/queues/tutorials/handle-rate-limits
Mở tutorial / guide ↗ Open tutorial / guide ↗/turnstile/tutorials/login-pages
Mở tutorial / guide ↗ Open tutorial / guide ↗/terraform/tutorial/add-page-rules
Mở tutorial / guide ↗ Open tutorial / guide ↗