@calamari@mastodon.social Heard of a company that would rather lock up account (pam faillock or sth) instead of using properly configured fail2ban/denyhosts to block password bruteforce attack based on IP because WOOHOO COMPLIANCE SAID SO smh :blobcatshrug2: