Bug 11668

Summary: wiki: Authentication disabled because of too many spam accounts
Product: Infrastructure Reporter: Michael Tremer <michael.tremer>
Component: Web SiteAssignee: Michael Tremer <michael.tremer>
Status: CLOSED FIXED QA Contact:
Severity: Major Usability    
Priority: - Unknown - CC: peter.mueller
Version: unspecified   
Hardware: unspecified   
OS: Unspecified   

Description Michael Tremer 2018-03-08 15:55:38 UTC
We get about 99% or more of spam accounts. Hundreds a day. They generate a shit ton of spam emails.

I have temporarily suspended any new registrations and put a note on the front page to ask people to send an email to wiki@ipfire.org and I will manually create an account.

We need to consider a central authentication backend for all IPFire users on all IPFire-hosted services so that we protect that one and manage only that one and not multiple ones where we have no or little control over.

OAuth springs to mind. I am quite short on time now to investigate any good solutions. Any help is appreciated.
Comment 1 Michael Tremer 2019-08-28 14:13:44 UTC
This has now been implemented!