9-task TDD plan: BannedIp model, BruteforceGuard (inet_pton CIDR + cache), ValidIpOrCidr rule, guests-only BlockBannedIp middleware + 403 page, Login/2FA failure hooks + audit, clusev:unban CLI, Anmeldeschutz settings tab with R5 confirm-modal unban. Spec erratum: middleware is appended (not prepended) so Auth::guest() resolves for the guests-only check. Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com> |
||
|---|---|---|
| .. | ||
| 2026-06-14-account-recovery.md | ||
| 2026-06-14-optional-pluggable-2fa.md | ||
| 2026-06-14-server-details-hardening-polish.md | ||
| 2026-06-14-webauthn-yubikey.md | ||
| 2026-06-15-recovery-codes-airtight-reveal.md | ||
| 2026-06-19-clusev-cli-and-command-shortcuts.md | ||
| 2026-06-19-help-page.md | ||
| 2026-06-20-2fa-challenge-backup-view.md | ||
| 2026-06-20-control-plane-bruteforce-ban.md | ||