Posted by: Anonymous Coward
on June 24, 2006 10:09 PM
> What do you think? > What did I forget/oversee?
Well, an attack could just be prepared a bit, registering accounts in advance...
And having to wait 24 hours is absolutely not acceptable for legitimate users... (normal registration process, even without email verification and/or captcha, already is quite boring...).
If you still think it might help, then allow new accounts immediately, by default... then, if there is a problem, just temporarily increase the time required before being allowed to connect/stay connected... new legitimate users will be disconnected, and this is a problem, but you cannot do more without better checking the user identity...
Still, the best solution is finding why people do bad things, and do what we can to resolve the problems we found...
We should stop thinking it is impossible... As long as you think it is, and do nothing about it, then it sure won't change... Well, it will worsen the situation, as you will try tricky ways to try to protect yourself... (and impose them on others...), wasting far, far, far more energy, than the energy you would have to use, to resolve the real problems...
Re:Anonymous registration
Posted by: Anonymous Coward on June 24, 2006 10:09 PM> What did I forget/oversee?
Well, an attack could just be prepared a bit, registering accounts in advance...
And having to wait 24 hours is absolutely not acceptable for legitimate users... (normal registration process, even without email verification and/or captcha, already is quite boring...).
If you still think it might help, then allow new accounts immediately, by default... then, if there is a problem, just temporarily increase the time required before being allowed to connect/stay connected... new legitimate users will be disconnected, and this is a problem, but you cannot do more without better checking the user identity...
Still, the best solution is finding why people do bad things, and do what we can to resolve the problems we found...
We should stop thinking it is impossible... As long as you think it is, and do nothing about it, then it sure won't change... Well, it will worsen the situation, as you will try tricky ways to try to protect yourself... (and impose them on others...), wasting far, far, far more energy, than the energy you would have to use, to resolve the real problems...
#