Developer forum

Forum » Feature requests » E-mail alert/warning when a solution has SQL Injection attacks

E-mail alert/warning when a solution has SQL Injection attacks

Kevin Steffer
Reply

I know through some customer cases, that e-mails are sent to Dynamicweb when a user attemps a SQL Injection attack against a solution.

It could be very benefitial to both us partners and the IT staff that supports the hosting of the solution to get those e-mails for warning, that those attempts was made.

It would be great to have:

  • Possibility to send e-mail warnings with detailed information about what happened
  • All attempts were logged in the filearchive for further investigation.
  • Possibilty to send e-mail warning when a user is banned with details of why
  • All attempts were logged in the filearchive when a user is banned

Replies

 
Asger Munkholm Højfeldt
Reply

Hi Kevin,

Thanks for your input - we can implement a fuction so you can setup to get an email when an attack happens.

It has been added to the 8.5 backlog

//Asger