1 |
On 5/21/20 11:43 AM, Michał Górny wrote: |
2 |
> On Thu, 2020-05-21 at 11:17 +0200, Toralf Förster wrote: |
3 |
>> On 5/21/20 10:47 AM, Michał Górny wrote: |
4 |
>>> TL;DR: I'm looking for opinions on how to protect goose from spam, |
5 |
>>> i.e. mass fake submissions. |
6 |
>>> |
7 |
>> |
8 |
>> I'd combine IP-limits with proof-of-work. |
9 |
>> CAPTCHA should be the very last option IMO. |
10 |
>> |
11 |
> |
12 |
> To be honest, I don't see the point for proof-of-work if we have IP |
13 |
> limits. |
14 |
> |
15 |
|
16 |
The POW has to be made for every submission and should (somehow) include the IP-address. |
17 |
So you have 2 barriers. None of both is perfect but their combination is expensive. |
18 |
|
19 |
-- |
20 |
Toralf |
21 |
PGP 23217DA7 9B888F45 |