Uploaded image for project: 'Bitbucket Data Center'
  1. Bitbucket Data Center
  2. BSERV-12208

Add Rate Limiting for certificate and Remember me token authentication methods

    XMLWordPrintable

Details

    • Suggestion
    • Resolution: Unresolved
    • None
    • Administration
    • None
    • 3
    • We collect Bitbucket feedback from various sources, and we evaluate what we've collected when planning our product roadmap. To understand how this piece of feedback will be reviewed, see our Implementation of New Features Policy.

    Description

      Currently rate limiting only applies to requests with an authorization header that starts with Basic or Bearer. It does not seek to rate limit things like UI requests (which use a remember-me token) or OAuth requests.

      This makes this functionality pointless for all Bitbucket instances that rely on these other forms of authentication.  Please consider including these other types of communication as well as certificate based authentication when thinking about Rate Limiting

      Attachments

        Issue Links

          Activity

            People

              Unassigned Unassigned
              cdrummond Craig Drummond
              Votes:
              5 Vote for this issue
              Watchers:
              10 Start watching this issue

              Dates

                Created:
                Updated: