From: Eugen Rochko Date: Sat, 24 Sep 2016 11:53:54 +0000 (+0200) Subject: Fix #6 - Rate limit GET reqs to 300/5min, POST to 100/5min X-Git-Url: https://git.xn--scling-oua.cat.family/?a=commitdiff_plain;h=3b56350121998abb249f14a45c656c2655d6344e;p=mastodon.git Fix #6 - Rate limit GET reqs to 300/5min, POST to 100/5min --- diff --git a/config/initializers/rack-attack.rb b/config/initializers/rack-attack.rb index 15fc6b351..fb447685b 100644 --- a/config/initializers/rack-attack.rb +++ b/config/initializers/rack-attack.rb @@ -1,5 +1,9 @@ class Rack::Attack - throttle('req/ip', limit: 300, period: 5.minutes) do |req| - req.ip + throttle('get-req/ip', limit: 300, period: 5.minutes) do |req| + req.ip if req.get? + end + + throttle('post-req/ip', limit: 100, period: 5.minutes) do |req| + req.ip if req.post? end end